Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Chrome 151 Update Fixes Five Critical Security Flaws

Chrome 151 Update Fixes Five Critical Security Flaws

Posted on August 12, 2026 By CWS

Google has rolled out Chrome 151 to its Stable channel, addressing five critical security vulnerabilities across essential browser components like the V8 JavaScript engine and Blink rendering engine. These updates enhance the safety of Chrome Extensions and the HTML processing layer.

Global Rollout of Chrome 151

The latest update, version 151.0.7922.137/.138, is being deployed for Windows and macOS, while Linux users receive version 151.0.7922.137. Google has stated that the update will become available to users worldwide over the coming days and weeks, ensuring all systems benefit from these crucial security enhancements.

Understanding the Vulnerabilities

All five vulnerabilities addressed are classified under the use-after-free (UAF) memory safety issue, which can occur when software accesses memory that has already been freed. Malicious actors could exploit these vulnerabilities through crafted web scripts or interactions with extensions, potentially leading to browser crashes, information disclosure, or arbitrary code execution.

The update prioritizes the protection of enterprise endpoints, urging security teams to promptly apply the patch to desktop browsers.

Vulnerability Details and Security Measures

Among the vulnerabilities, CVE-2026-19556 in the V8 JavaScript engine stands out. Discovered by Jihyeon Jeong from Compsec Lab at Seoul National University, this flaw is a primary target for exploits due to its role in processing web-supplied JavaScript code. Google awarded a $500 bug bounty for this discovery, underlining its significance.

Other notable flaws include CVE-2026-19560 in the Blink rendering engine, reported by Huynh Dinh Vu, and CVE-2026-19558 in the Chrome Extensions API, found by @bean5oup. These components’ broad permissions make their security crucial in preventing remote code execution vulnerabilities in Chrome.

Google has restricted detailed technical information regarding these vulnerabilities until the user base updates to Chrome 151, limiting the risk of exploitation by attackers.

Recommendations for Users and Administrators

Desktop users should navigate to Help > About Google Chrome to initiate the update to version 151.0.7922.137/.138, followed by a browser restart. Enterprise administrators are advised to ensure that managed endpoints across systems are updated through software deployment and patch management platforms.

Google credits its security researchers and emphasizes the role of automated fuzzing and memory testing in developing these security measures. Such proactive approaches are vital in maintaining browser integrity against emerging threats.

Cyber Security News Tags:Blink rendering, browser security, Chrome extensions, Chrome update, enterprise security, Google Chrome, security patch, use-after-free, V8 engine, vulnerability fix

Post navigation

Previous Post: SharePoint Exploit Emerges Following PoC Release
Next Post: Enterprise Security Shows Strength at Edge, Weakness Within

Related Posts

New PamStealer Malware Targets Mac Passwords New PamStealer Malware Targets Mac Passwords Cyber Security News
Critical Chrome 0-Day Vulnerability Exploited Worldwide Critical Chrome 0-Day Vulnerability Exploited Worldwide Cyber Security News
New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data Cyber Security News
IBM AIX Vulnerabilities Let Remote Attacker Execute Arbitrary Commands IBM AIX Vulnerabilities Let Remote Attacker Execute Arbitrary Commands Cyber Security News
OpenVPN Vulnerabilities Let Hackers Triggers Dos Attack and Bypass Security Checks OpenVPN Vulnerabilities Let Hackers Triggers Dos Attack and Bypass Security Checks Cyber Security News
North Korean Cybercriminals Intensify Crypto Attacks North Korean Cybercriminals Intensify Crypto Attacks Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark