Junglewise Threat Intelligence

CVE-2026-17751: Google Chrome arbitrary code execution in AdFilter

CVE-2026-17751 · Severity: info · CVSS 0 · Published 2026-07-30

Technologies: Google Chrome. Vendors: Google.

Executive brief

Google Chrome, a widely used web browser, contained a security vulnerability in its AdFilter component. An attacker could exploit this by tricking a user into visiting a specially crafted website, potentially allowing the attacker to run unauthorized code on the user's computer. While the exploit is limited to the browser's security sandbox, it represents a significant risk to the integrity of the browsing session.

Technical details

An inappropriate implementation vulnerability exists in the AdFilter component of Google Chrome prior to version 151.0.7922.72. A remote attacker can exploit this flaw by enticing a user to visit a malicious HTML page. Successful exploitation allows the attacker to execute arbitrary code within the context of the browser's sandbox. The vulnerability is tracked by Chromium as medium severity and has been addressed in the stable channel update for Windows, Mac, and Linux.

Affected products

  • Google Chrome prior to 151.0.7922.72

Timeline

  • 2026-07-29: patched: Fixed in version 151.0.7922.72
  • 2026-07-30: disclosed: NVD publication date

References

Related threats