


Perceptive Security
SOC/SIEM Consultancy

Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a san…
Published:
30 juli 2026 om 00:00:00
Alert date:
30 juli 2026 om 19:11:53
Source:
nvd.nist.gov
Web Technologies, Zero-Day Vulnerabilities, Operating Systems
CVE-2026-17711 is a high-severity vulnerability in Google Chrome on macOS affecting versions prior to 151.0.7922.72. The flaw involves a race condition in the Downloads component of the browser. An attacker who has already compromised the renderer process can exploit this vulnerability to potentially escape the Chrome sandbox. Exploitation requires the victim to visit a specially crafted HTML page. The vulnerability is rated High severity by the Chromium security team. A fix has been released in Chrome stable channel version 151.0.7922.72. The issue is tracked in the Chromium bug tracker under issue 519996040.
Technical details
Mitigation steps:
Affected products:
Google Chrome on macOS prior to 151.0.7922.72
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-17711
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html
https://issues.chromium.org/issues/519996040
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
