chromereleases.googleblog.com
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01193673229.html CVE-2026-19153
HIGH
Google Chrome Insufficient Input Validation in Workers Leading to Site Isolation Bypass
Record summary
CVE-2026-19153 has a selected CVSS score of 8.1 (high).
Description
Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 7, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
ChromeBrowse Google / Chrome | CVE List | 151.0.7922.109 to < 151.0.7922.109 | affected |
References
3issues.chromium.org
https://issues.chromium.org/issues/532939327 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-19153