{"schema_version":1,"title":"Google Chrome for Android vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 21 vulnerabilities in Google Chrome for Android: 0 in the last 7 days and 3 in the last 90 days, 2 of them critical and 2 exploited in the wild. The most recent, CVE-2026-17741, was published on 30 July 2026.","url":"https://junglewise.ai/threats/technologies/chrome-for-android","json_url":"https://junglewise.ai/threats/technologies/chrome-for-android.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/chrome-for-android","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":2,"all_time":21,"critical":2,"exploited":2,"last_7_days":0,"last_30_days":0,"last_90_days":3,"last_365_days":18},"latest":[{"cve":"CVE-2026-17741","cvss":6.5,"slug":"cve-2026-17741-google-chrome-webview-sandbox-escape-via-improper-input","title":"Google Chrome WebView sandbox escape via improper input validation","severity":"info","exploited":false,"published_at":"2026-07-30T01:16:36.937+00:00","url":"https://junglewise.ai/threats/cve-2026-17741-google-chrome-webview-sandbox-escape-via-improper-input"},{"cve":"CVE-2026-13924","cvss":4.3,"slug":"cve-2026-13924-google-chrome-webview-same-origin-policy-bypass","title":"Google Chrome WebView Same Origin Policy bypass","severity":"info","exploited":false,"published_at":"2026-06-30T23:17:06.33+00:00","url":"https://junglewise.ai/threats/cve-2026-13924-google-chrome-webview-same-origin-policy-bypass"},{"cve":"CVE-2026-13870","cvss":6.5,"slug":"cve-2026-13870-google-chrome-webview-use-after-free-in-android","title":"Google Chrome WebView use after free in Android","severity":"info","exploited":false,"published_at":"2026-06-30T23:17:01.343+00:00","url":"https://junglewise.ai/threats/cve-2026-13870-google-chrome-webview-use-after-free-in-android"},{"cve":"CVE-2026-13037","slug":"cve-2026-13037-google-chrome-for-android-use-after-free-in-webview","title":"Google Chrome for Android use after free in WebView","severity":"info","exploited":false,"published_at":"2026-06-24T19:17:09.953+00:00","url":"https://junglewise.ai/threats/cve-2026-13037-google-chrome-for-android-use-after-free-in-webview"},{"cve":"CVE-2026-12438","cvss":8.3,"epss":0.0029,"slug":"cve-2026-12438-google-chrome-webview-sandbox-escape-on-android","title":"Google Chrome WebView sandbox escape on Android","severity":"high","exploited":false,"published_at":"2026-06-17T13:19:58.98+00:00","url":"https://junglewise.ai/threats/cve-2026-12438-google-chrome-webview-sandbox-escape-on-android"},{"cve":"CVE-2026-11297","cvss":2,"slug":"cve-2026-11297-google-chrome-for-android-navigation-bypass-in-reader-mode","title":"Google Chrome for Android navigation bypass in Reader Mode","severity":"info","exploited":false,"published_at":"2026-06-05T00:17:07.45+00:00","url":"https://junglewise.ai/threats/cve-2026-11297-google-chrome-for-android-navigation-bypass-in-reader-mode"},{"cve":"CVE-2026-11291","slug":"cve-2026-11291-google-chrome-for-android-sop-bypass-in-android-autofill","title":"Google Chrome for Android SOP bypass in Android Autofill","severity":"info","exploited":false,"published_at":"2026-06-05T00:17:06.727+00:00","url":"https://junglewise.ai/threats/cve-2026-11291-google-chrome-for-android-sop-bypass-in-android-autofill"},{"cve":"CVE-2026-11247","cvss":3.3,"slug":"cve-2026-11247-google-chrome-for-android-cross-origin-data-leak-in-customtabs","title":"Google Chrome for Android cross-origin data leak in CustomTabs","severity":"info","exploited":false,"published_at":"2026-06-05T00:17:01.13+00:00","url":"https://junglewise.ai/threats/cve-2026-11247-google-chrome-for-android-cross-origin-data-leak-in-customtabs"},{"cve":"CVE-2026-11215","cvss":4.3,"slug":"cve-2026-11215-google-chrome-for-android-domain-spoofing-in-cronet","title":"Google Chrome for Android domain spoofing in Cronet","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:29.107+00:00","url":"https://junglewise.ai/threats/cve-2026-11215-google-chrome-for-android-domain-spoofing-in-cronet"},{"cve":"CVE-2026-11175","cvss":4.3,"slug":"cve-2026-11175-google-chrome-for-android-ui-spoofing-in-messages","title":"Google Chrome for Android UI spoofing in Messages","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:24.347+00:00","url":"https://junglewise.ai/threats/cve-2026-11175-google-chrome-for-android-ui-spoofing-in-messages"},{"cve":"CVE-2026-11167","slug":"cve-2026-11167-google-chrome-for-android-sandbox-escape-in-webview","title":"Google Chrome for Android sandbox escape in WebView","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:23.417+00:00","url":"https://junglewise.ai/threats/cve-2026-11167-google-chrome-for-android-sandbox-escape-in-webview"},{"cve":"CVE-2026-11163","cvss":6.5,"slug":"cve-2026-11163-google-chrome-for-android-use-after-free-in-messages","title":"Google Chrome for Android use after free in Messages","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:22.917+00:00","url":"https://junglewise.ai/threats/cve-2026-11163-google-chrome-for-android-use-after-free-in-messages"},{"cve":"CVE-2026-11097","cvss":4.3,"slug":"cve-2026-11097-google-chrome-webview-cross-origin-data-leak-on-android","title":"Google Chrome WebView cross-origin data leak on Android","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:15.18+00:00","url":"https://junglewise.ai/threats/cve-2026-11097-google-chrome-webview-cross-origin-data-leak-on-android"},{"cve":"CVE-2026-11035","cvss":0,"slug":"cve-2026-11035-google-chrome-for-android-privilege-escalation-in-custom-tabs","title":"Google Chrome for Android privilege escalation in Custom Tabs","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:07.633+00:00","url":"https://junglewise.ai/threats/cve-2026-11035-google-chrome-for-android-privilege-escalation-in-custom-tabs"},{"cve":"CVE-2026-9892","cvss":9.8,"slug":"cve-2026-9892-google-chrome-skia-sandbox-escape-on-android","title":"Google Chrome Skia sandbox escape on Android","severity":"info","exploited":false,"published_at":"2026-05-28T23:16:47.187+00:00","url":"https://junglewise.ai/threats/cve-2026-9892-google-chrome-skia-sandbox-escape-on-android"},{"cve":"CVE-2026-9888","slug":"cve-2026-9888-google-chrome-webview-use-after-free-sandbox-escape","title":"Google Chrome WebView use after free sandbox escape","severity":"info","exploited":false,"published_at":"2026-05-28T23:16:46.787+00:00","url":"https://junglewise.ai/threats/cve-2026-9888-google-chrome-webview-use-after-free-sandbox-escape"},{"cve":"CVE-2026-8583","cvss":5.3,"epss":0.0005,"slug":"cve-2026-8583-google-chrome-for-android-insufficient-policy-enforcement-in-webxr","title":"Google Chrome for Android insufficient policy enforcement in WebXR","severity":"medium","exploited":false,"published_at":"2026-05-14T20:17:20.703+00:00","url":"https://junglewise.ai/threats/cve-2026-8583-google-chrome-for-android-insufficient-policy-enforcement-in-webxr"},{"cve":"CVE-2026-8572","cvss":3.1,"epss":0.0003,"slug":"cve-2026-8572-google-chrome-insufficient-policy-enforcement-in-network","title":"Google Chrome insufficient policy enforcement in Network","severity":"low","exploited":false,"published_at":"2026-05-14T20:17:19.493+00:00","url":"https://junglewise.ai/threats/cve-2026-8572-google-chrome-insufficient-policy-enforcement-in-network"},{"cve":"CVE-2017-5070","cvss":8.8,"slug":"cve-2017-5070-google-chromium-v8-type-confusion-vulnerability","title":"Google Chromium V8 Type Confusion Vulnerability","severity":"critical","exploited":true,"published_at":"2022-06-08T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2017-5070-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2017-5030","cvss":8.8,"slug":"cve-2017-5030-google-chromium-v8-memory-corruption-vulnerability","title":"Google Chromium V8 Memory Corruption Vulnerability","severity":"critical","exploited":true,"published_at":"2022-06-08T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2017-5030-google-chromium-v8-memory-corruption-vulnerability"},{"cve":"CVE-2016-5209","cvss":8.8,"slug":"cve-2016-5209-google-chrome-bad-casting-in-blink-bitmap-manipulation","title":"Google Chrome bad casting in Blink bitmap manipulation","severity":"high","exploited":false,"published_at":"2017-01-19T05:59:00.557+00:00","url":"https://junglewise.ai/threats/cve-2016-5209-google-chrome-bad-casting-in-blink-bitmap-manipulation"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Google Chrome","slug":"chrome","vulnerabilities":2529,"url":"https://junglewise.ai/threats/technologies/chrome"},{"name":"Google Android","slug":"android","vulnerabilities":356,"url":"https://junglewise.ai/threats/technologies/android"},{"name":"Google Chrome for iOS","slug":"chrome-for-ios","vulnerabilities":79,"url":"https://junglewise.ai/threats/technologies/chrome-for-ios"},{"name":"Google Chromium V8","slug":"chromium-v8","vulnerabilities":41,"url":"https://junglewise.ai/threats/technologies/chromium-v8"},{"name":"Google Chromium","slug":"chromium","vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/chromium"},{"name":"Google TensorFlow","slug":"tensorflow","vulnerabilities":31,"url":"https://junglewise.ai/threats/technologies/tensorflow"},{"name":"Google Cloud Platform","slug":"google-cloud-platform","vulnerabilities":29,"url":"https://junglewise.ai/threats/technologies/google-cloud-platform"},{"name":"Google Android Framework","slug":"android-framework","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/android-framework"},{"name":"Google ChromeOS","slug":"chromeos","vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/chromeos"},{"name":"Google Pixel Bootloader","slug":"pixel-bootloader","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/pixel-bootloader"},{"name":"Google WebView","slug":"webview","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/webview"},{"name":"Google A2ui\\","slug":"a2ui","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/a2ui"}],"technology":{"hub":true,"name":"Google Chrome for Android","slug":"chrome-for-android","vendor":{"name":"Google","slug":"google","url":"https://junglewise.ai/threats/vendors/google"},"aliases":[],"category":"web-browser","homepage":"https://www.google.com/chrome/","description":"The mobile version of the Google Chrome web browser developed for the Android operating system.","url":"https://junglewise.ai/threats/technologies/chrome-for-android"},"most_severe":[{"cve":"CVE-2017-5030","cvss":8.8,"slug":"cve-2017-5030-google-chromium-v8-memory-corruption-vulnerability","title":"Google Chromium V8 Memory Corruption Vulnerability","severity":"critical","exploited":true,"published_at":"2022-06-08T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2017-5030-google-chromium-v8-memory-corruption-vulnerability"},{"cve":"CVE-2017-5070","cvss":8.8,"slug":"cve-2017-5070-google-chromium-v8-type-confusion-vulnerability","title":"Google Chromium V8 Type Confusion Vulnerability","severity":"critical","exploited":true,"published_at":"2022-06-08T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2017-5070-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2016-5209","cvss":8.8,"slug":"cve-2016-5209-google-chrome-bad-casting-in-blink-bitmap-manipulation","title":"Google Chrome bad casting in Blink bitmap manipulation","severity":"high","exploited":false,"published_at":"2017-01-19T05:59:00.557+00:00","url":"https://junglewise.ai/threats/cve-2016-5209-google-chrome-bad-casting-in-blink-bitmap-manipulation"},{"cve":"CVE-2026-12438","cvss":8.3,"epss":0.0029,"slug":"cve-2026-12438-google-chrome-webview-sandbox-escape-on-android","title":"Google Chrome WebView sandbox escape on Android","severity":"high","exploited":false,"published_at":"2026-06-17T13:19:58.98+00:00","url":"https://junglewise.ai/threats/cve-2026-12438-google-chrome-webview-sandbox-escape-on-android"},{"cve":"CVE-2026-8583","cvss":5.3,"epss":0.0005,"slug":"cve-2026-8583-google-chrome-for-android-insufficient-policy-enforcement-in-webxr","title":"Google Chrome for Android insufficient policy enforcement in WebXR","severity":"medium","exploited":false,"published_at":"2026-05-14T20:17:20.703+00:00","url":"https://junglewise.ai/threats/cve-2026-8583-google-chrome-for-android-insufficient-policy-enforcement-in-webxr"},{"cve":"CVE-2026-8572","cvss":3.1,"epss":0.0003,"slug":"cve-2026-8572-google-chrome-insufficient-policy-enforcement-in-network","title":"Google Chrome insufficient policy enforcement in Network","severity":"low","exploited":false,"published_at":"2026-05-14T20:17:19.493+00:00","url":"https://junglewise.ai/threats/cve-2026-8572-google-chrome-insufficient-policy-enforcement-in-network"},{"cve":"CVE-2026-9892","cvss":9.8,"slug":"cve-2026-9892-google-chrome-skia-sandbox-escape-on-android","title":"Google Chrome Skia sandbox escape on Android","severity":"info","exploited":false,"published_at":"2026-05-28T23:16:47.187+00:00","url":"https://junglewise.ai/threats/cve-2026-9892-google-chrome-skia-sandbox-escape-on-android"},{"cve":"CVE-2026-17741","cvss":6.5,"slug":"cve-2026-17741-google-chrome-webview-sandbox-escape-via-improper-input","title":"Google Chrome WebView sandbox escape via improper input validation","severity":"info","exploited":false,"published_at":"2026-07-30T01:16:36.937+00:00","url":"https://junglewise.ai/threats/cve-2026-17741-google-chrome-webview-sandbox-escape-via-improper-input"},{"cve":"CVE-2026-13870","cvss":6.5,"slug":"cve-2026-13870-google-chrome-webview-use-after-free-in-android","title":"Google Chrome WebView use after free in Android","severity":"info","exploited":false,"published_at":"2026-06-30T23:17:01.343+00:00","url":"https://junglewise.ai/threats/cve-2026-13870-google-chrome-webview-use-after-free-in-android"},{"cve":"CVE-2026-11163","cvss":6.5,"slug":"cve-2026-11163-google-chrome-for-android-use-after-free-in-messages","title":"Google Chrome for Android use after free in Messages","severity":"info","exploited":false,"published_at":"2026-06-04T23:17:22.917+00:00","url":"https://junglewise.ai/threats/cve-2026-11163-google-chrome-for-android-use-after-free-in-messages"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}