top of page
perceptive_background_267k.jpg

Out of bounds write in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted …

Published:

30 July 2026 at 00:00:00

Alert date:

31 July 2026 at 00:03:35

Source:

nvd.nist.gov

Click to open the original link from this advisory

Mobile & IoT, Web Technologies, Zero-Day Vulnerabilities

CVE-2026-17727 is a high-severity out-of-bounds write vulnerability in WebGL within Google Chrome on Android. It affects versions prior to 151.0.7922.72 and allows a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability was assigned a High severity rating by the Chromium security team. Exploitation requires the victim to visit a malicious HTML page, making it remotely exploitable without authentication. Google has addressed the issue in the stable channel update released in July 2026. The flaw is tracked in the Chromium issue tracker under issue 529932631. Users running Chrome on Android are advised to update immediately to the patched version.

Technical details

Mitigation steps:

Affected products:

Google Chrome on Android (prior to 151.0.7922.72)

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page