Executive brief
Google Chrome's Downloads component contained an information leak vulnerability that could allow an attacker who has already compromised the browser's rendering engine to extract sensitive data across security boundaries. This could expose user data such as download history or other sensitive information that should be isolated from untrusted web pages.
Technical details
This vulnerability is an information leak in Chrome's Downloads component that could allow cross-origin data access. The vulnerability required a compromised renderer process as a precondition—the attacker must first have achieved code execution within the Chrome sandbox. Once the renderer was compromised, a crafted HTML page could be used to obtain sensitive cross-origin data. The vulnerability was fixed in Chrome 153.0.8010.36 and later versions. The relatively low CVSS score of 3.1 reflects the requirement for prior renderer compromise, limiting the attack surface.
Affected products
- Google Chrome prior to 153.0.8010.36
Timeline
- 2026-09-09: disclosed
- 2026-09-08: patched: Fixed in Chrome 153.0.8010.36