Executive brief
Google Chrome's JavaScript engine (V8) contains an integer overflow flaw that allows attackers to execute arbitrary code within the browser sandbox by serving a malicious web page. An attacker could exploit this vulnerability to break out of the sandbox and potentially gain full system access, compromising user data and device security.
Technical details
An integer overflow vulnerability exists in V8, Google Chrome's JavaScript engine, prior to version 153.0.8010.47. The vulnerability is triggered through crafted HTML content delivered to a victim's browser. The attack vector is network-based and requires no user authentication or special privileges; the victim simply needs to visit or be redirected to a malicious website. A successful exploit allows arbitrary code execution within the Chrome sandbox context, which may subsequently be chained with other vulnerabilities to escape the sandbox. Google has patched the vulnerability in Chrome 153.0.8010.47 and later.
Affected products
- Google Chrome prior to 153.0.8010.47
Timeline
- 2026-09-15: disclosed: CVE-2026-91728 published
- 2026-09-15: patched: Fix released in Chrome 153.0.8010.47