


Perceptive Security
SOC/SIEM Consultancy

Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to p…
Published:
29 juli 2026 om 22:00:00
Alert date:
30 juli 2026 om 18:03:11
Source:
nvd.nist.gov
Mobile & IoT, Web Technologies, Zero-Day Vulnerabilities
CVE-2026-17676 is a high-severity vulnerability in Google Chrome for Android affecting versions prior to 151.0.7922.72. The flaw resides in ANGLE (Almost Native Graphics Layer Engine), a graphics abstraction layer used by Chrome. An inappropriate implementation allows a remote attacker who has already compromised the renderer process to potentially escape the browser sandbox. Exploitation is achieved via a specially crafted HTML page. The vulnerability is classified as High severity by the Chromium security team. Users are advised to update to Chrome 151.0.7922.72 or later to mitigate the risk. The issue has been patched and disclosed via the NVD and Chromium release channels.
Technical details
Mitigation steps:
Affected products:
Google Chrome for Android (prior to 151.0.7922.72)
ANGLE
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-17676
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html
https://issues.chromium.org/issues/513920298
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
