top of page
perceptive_background_267k.jpg

Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a san…

Published:

29 juli 2026 om 22:00:00

Alert date:

30 juli 2026 om 17:11:53

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Zero-Day Vulnerabilities, Operating Systems

CVE-2026-17709 describes a race condition vulnerability in the Downloads component of Google Chrome on macOS. The flaw affects versions prior to 151.0.7922.72 and carries a High severity rating from the Chromium security team. An attacker who has already compromised the renderer process could exploit this race condition to potentially escape the browser sandbox. The attack vector requires the victim to visit a specially crafted HTML page. Sandbox escapes are considered critical in browser security as they allow attackers to break out of the isolated browsing environment and interact with the underlying operating system. Google addressed the issue in the stable channel update released in July 2026. The vulnerability is currently undergoing analysis by NVD.

Technical details

Mitigation steps:

Affected products:

Google Chrome on Mac prior to 151.0.7922.72

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page