top of page
perceptive_background_267k.jpg

Integer overflow in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTM…

Published:

30 July 2026 at 00:00:00

Alert date:

31 July 2026 at 00:03:35

Source:

nvd.nist.gov

Click to open the original link from this advisory

Mobile & IoT, Web Technologies, Zero-Day Vulnerabilities

CVE-2026-17726 describes a high-severity integer overflow vulnerability in the WebGL component of Google Chrome on Android. The flaw exists in versions prior to 151.0.7922.72 and can be exploited by a remote attacker via a specially crafted HTML page. Successful exploitation could potentially allow a sandbox escape, granting the attacker elevated access beyond the browser's security boundary. The vulnerability was assigned a 'High' severity rating by the Chromium security team. Google has addressed the issue in the stable channel update released in July 2026. Users are strongly advised to update their Chrome for Android installations to version 151.0.7922.72 or later. The issue was tracked internally in the Chromium issue tracker under issue #529867799. No active exploitation in the wild has been mentioned, but the sandbox escape potential makes this a critical concern for Android users.

Technical details

Mitigation steps:

Affected products:

Google Chrome for Android (prior to 151.0.7922.72)

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page