SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-91748

HIGH · CVSS 8.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A race condition vulnerability in Google Chrome extensions on Mac prior to version 153.0.8010.47 could allow remote attackers, through social engineering tactics, to execute arbitrary code outside the browser's sandbox by compromising the renderer process. This poses a significant risk to users who may inadvertently interact with malicious content. Organizations and users relying on Chrome for sensitive operations should prioritize updating to the latest version to mitigate potential exploitation.

CVE
CVE-2026-91748
Severity
HIGH
CVSS
8.3
EPSS
0.21%
Chrome

Original NVD Description

Race condition in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)

Related CVEs

Other vulnerabilities affecting the same vendor(s)