{"schema_version":1,"title":"Google Chromium vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 36 vulnerabilities in Google Chromium: 0 in the last 7 days and 2 in the last 90 days, 11 of them critical and 11 exploited in the wild. The most recent, CVE-2026-87491, was published on 9 September 2026.","url":"https://junglewise.ai/threats/technologies/chromium","json_url":"https://junglewise.ai/threats/technologies/chromium.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/chromium","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":7,"all_time":36,"critical":11,"exploited":11,"last_7_days":0,"last_30_days":2,"last_90_days":2,"last_365_days":4},"latest":[{"cve":"CVE-2026-87491","cvss":8.8,"epss":0.0314,"slug":"cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine","title":"Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via","severity":"critical","exploited":true,"published_at":"2026-09-09T01:17:05.887+00:00","url":"https://junglewise.ai/threats/cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine"},{"cve":"CVE-2026-85046","cvss":8.8,"epss":0.4888,"slug":"cve-2026-85046-google-chromium-v8-type-confusion-vulnerability","title":"Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a cr","severity":"critical","exploited":true,"published_at":"2026-09-03T20:17:24.21+00:00","url":"https://junglewise.ai/threats/cve-2026-85046-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2026-2441","cvss":8.8,"epss":0.2313,"slug":"cve-2026-2441-google-chromium-use-after-free-in-css","title":"Google Chromium use-after-free in CSS","severity":"critical","exploited":true,"published_at":"2026-02-17T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2026-2441-google-chromium-use-after-free-in-css"},{"cve":"CVE-2025-14174","cvss":8.8,"epss":0.0031,"slug":"cve-2025-14174-google-chromium-out-of-bounds-memory-access-in-angle","title":"Google Chromium out of bounds memory access in ANGLE","severity":"critical","exploited":true,"published_at":"2025-12-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-14174-google-chromium-out-of-bounds-memory-access-in-angle"},{"cve":"CVE-2025-6558","cvss":8.8,"epss":0.0033,"slug":"cve-2025-6558-google-chromium-improper-input-validation-in-angle-and-gpu","title":"Google Chromium improper input validation in ANGLE and GPU","severity":"critical","exploited":true,"published_at":"2025-07-22T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-6558-google-chromium-improper-input-validation-in-angle-and-gpu"},{"cve":"CVE-2025-6554","cvss":8.1,"epss":0.0158,"slug":"cve-2025-6554-google-chromium-v8-type-confusion-in-javascript-engine","title":"Google Chromium V8 type confusion in JavaScript engine","severity":"critical","exploited":true,"published_at":"2025-07-02T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-6554-google-chromium-v8-type-confusion-in-javascript-engine"},{"cve":"CVE-2024-4671","cvss":9.6,"slug":"cve-2024-4671-google-chromium-visuals-use-after-free-vulnerability","title":"Google Chromium Visuals Use-After-Free Vulnerability","severity":"critical","exploited":true,"published_at":"2024-05-13T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-4671-google-chromium-visuals-use-after-free-vulnerability"},{"cve":"CVE-2022-3723","cvss":8.8,"slug":"cve-2022-3723-google-chromium-v8-type-confusion-vulnerability","title":"Google Chromium V8 Type Confusion Vulnerability","severity":"critical","exploited":true,"published_at":"2022-10-28T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-3723-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2021-37973","cvss":9.6,"slug":"cve-2021-37973-google-chromium-portals-use-after-free-vulnerability","title":"Google Chromium Portals Use-After-Free Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37973-google-chromium-portals-use-after-free-vulnerability"},{"cve":"CVE-2021-21166","cvss":8.8,"slug":"cve-2021-21166-google-chromium-race-condition-vulnerability","title":"Google Chromium Race Condition Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-21166-google-chromium-race-condition-vulnerability"},{"cve":"CVE-2021-37976","cvss":6.5,"slug":"cve-2021-37976-google-chromium-information-disclosure-vulnerability","title":"Google Chromium Information Disclosure Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37976-google-chromium-information-disclosure-vulnerability"},{"cve":"CVE-2016-9650","cvss":4.3,"slug":"cve-2016-9650-google-chrome-blink-no-referrer-policy-bypass-in-iframes","title":"Google Chrome Blink no-referrer policy bypass in iframes","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:01.137+00:00","url":"https://junglewise.ai/threats/cve-2016-9650-google-chrome-blink-no-referrer-policy-bypass-in-iframes"},{"cve":"CVE-2016-5226","cvss":6.1,"slug":"cve-2016-5226-google-chrome-xss-via-drag-and-drop-in-blink","title":"Google Chrome XSS via drag and drop in Blink","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:01.12+00:00","url":"https://junglewise.ai/threats/cve-2016-5226-google-chrome-xss-via-drag-and-drop-in-blink"},{"cve":"CVE-2016-5225","cvss":4.3,"slug":"cve-2016-5225-google-chrome-csp-bypass-in-blink-form-actions","title":"Google Chrome CSP bypass in Blink form actions","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:01.103+00:00","url":"https://junglewise.ai/threats/cve-2016-5225-google-chrome-csp-bypass-in-blink-form-actions"},{"cve":"CVE-2016-5224","cvss":4.3,"slug":"cve-2016-5224-google-chrome-same-origin-policy-bypass-in-svg-filters","title":"Google Chrome Same Origin Policy bypass in SVG filters","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:01.057+00:00","url":"https://junglewise.ai/threats/cve-2016-5224-google-chrome-same-origin-policy-bypass-in-svg-filters"},{"cve":"CVE-2016-5223","cvss":6.5,"slug":"cve-2016-5223-google-chrome-integer-overflow-in-pdfium","title":"Google Chrome integer overflow in PDFium","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:01.027+00:00","url":"https://junglewise.ai/threats/cve-2016-5223-google-chrome-integer-overflow-in-pdfium"},{"cve":"CVE-2016-5222","cvss":6.5,"slug":"cve-2016-5222-google-chrome-address-spoofing-in-omnibox","title":"Google Chrome address spoofing in Omnibox","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.997+00:00","url":"https://junglewise.ai/threats/cve-2016-5222-google-chrome-address-spoofing-in-omnibox"},{"cve":"CVE-2016-5221","cvss":6.3,"slug":"cve-2016-5221-google-chrome-type-confusion-in-angle-libglesv2","title":"Google Chrome type confusion in ANGLE libGLESv2","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.963+00:00","url":"https://junglewise.ai/threats/cve-2016-5221-google-chrome-type-confusion-in-angle-libglesv2"},{"cve":"CVE-2016-5220","cvss":6.5,"slug":"cve-2016-5220-google-chrome-local-file-disclosure-in-pdfium","title":"Google Chrome local file disclosure in PDFium","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.933+00:00","url":"https://junglewise.ai/threats/cve-2016-5220-google-chrome-local-file-disclosure-in-pdfium"},{"cve":"CVE-2016-5219","cvss":6.3,"slug":"cve-2016-5219-google-chrome-v8-use-after-free-in-heap","title":"Google Chrome V8 use after free in heap","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.9+00:00","url":"https://junglewise.ai/threats/cve-2016-5219-google-chrome-v8-use-after-free-in-heap"},{"cve":"CVE-2016-5218","cvss":6.5,"slug":"cve-2016-5218-google-chrome-address-spoofing-in-omnibox-via-pdf-navigation","title":"Google Chrome address spoofing in Omnibox via PDF navigation","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.87+00:00","url":"https://junglewise.ai/threats/cve-2016-5218-google-chrome-address-spoofing-in-omnibox-via-pdf-navigation"},{"cve":"CVE-2016-5217","cvss":6.5,"slug":"cve-2016-5217-google-chrome-site-isolation-bypass-in-extensions-api-and-pdfium","title":"Google Chrome site isolation bypass in extensions API and PDFium","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.823+00:00","url":"https://junglewise.ai/threats/cve-2016-5217-google-chrome-site-isolation-bypass-in-extensions-api-and-pdfium"},{"cve":"CVE-2016-5215","cvss":6.3,"slug":"cve-2016-5215-google-chrome-use-after-free-in-webaudio","title":"Google Chrome use after free in WebAudio","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.76+00:00","url":"https://junglewise.ai/threats/cve-2016-5215-google-chrome-use-after-free-in-webaudio"},{"cve":"CVE-2016-5214","cvss":4.3,"slug":"cve-2016-5214-google-chrome-mark-of-the-web-bypass-in-file-downloads","title":"Google Chrome Mark of the Web bypass in file downloads","severity":"medium","exploited":false,"published_at":"2017-01-19T05:59:00.73+00:00","url":"https://junglewise.ai/threats/cve-2016-5214-google-chrome-mark-of-the-web-bypass-in-file-downloads"},{"cve":"CVE-2016-5213","cvss":8.8,"slug":"cve-2016-5213-google-chrome-use-after-free-in-v8-engine","title":"Google Chrome use after free in V8 engine","severity":"high","exploited":false,"published_at":"2017-01-19T05:59:00.697+00:00","url":"https://junglewise.ai/threats/cve-2016-5213-google-chrome-use-after-free-in-v8-engine"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":1,"exploited":1,"vulnerabilities":1},{"week":"2026-09-07","critical":1,"exploited":1,"vulnerabilities":1},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Google Chrome","slug":"chrome","vulnerabilities":2529,"url":"https://junglewise.ai/threats/technologies/chrome"},{"name":"Google Android","slug":"android","vulnerabilities":356,"url":"https://junglewise.ai/threats/technologies/android"},{"name":"Google Chrome for iOS","slug":"chrome-for-ios","vulnerabilities":79,"url":"https://junglewise.ai/threats/technologies/chrome-for-ios"},{"name":"Google Chromium V8","slug":"chromium-v8","vulnerabilities":41,"url":"https://junglewise.ai/threats/technologies/chromium-v8"},{"name":"Google TensorFlow","slug":"tensorflow","vulnerabilities":31,"url":"https://junglewise.ai/threats/technologies/tensorflow"},{"name":"Google Cloud Platform","slug":"google-cloud-platform","vulnerabilities":29,"url":"https://junglewise.ai/threats/technologies/google-cloud-platform"},{"name":"Google Android Framework","slug":"android-framework","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/android-framework"},{"name":"Google Chrome for Android","slug":"chrome-for-android","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/chrome-for-android"},{"name":"Google ChromeOS","slug":"chromeos","vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/chromeos"},{"name":"Google Pixel Bootloader","slug":"pixel-bootloader","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/pixel-bootloader"},{"name":"Google WebView","slug":"webview","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/webview"},{"name":"Google A2ui\\","slug":"a2ui","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/a2ui"}],"technology":{"hub":true,"name":"Google Chromium","slug":"chromium","vendor":{"name":"Google","slug":"google","url":"https://junglewise.ai/threats/vendors/google"},"aliases":[],"category":"web-browser","url":"https://junglewise.ai/threats/technologies/chromium"},"most_severe":[{"cve":"CVE-2024-4671","cvss":9.6,"slug":"cve-2024-4671-google-chromium-visuals-use-after-free-vulnerability","title":"Google Chromium Visuals Use-After-Free Vulnerability","severity":"critical","exploited":true,"published_at":"2024-05-13T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-4671-google-chromium-visuals-use-after-free-vulnerability"},{"cve":"CVE-2021-37973","cvss":9.6,"slug":"cve-2021-37973-google-chromium-portals-use-after-free-vulnerability","title":"Google Chromium Portals Use-After-Free Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-37973-google-chromium-portals-use-after-free-vulnerability"},{"cve":"CVE-2026-85046","cvss":8.8,"epss":0.4888,"slug":"cve-2026-85046-google-chromium-v8-type-confusion-vulnerability","title":"Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a cr","severity":"critical","exploited":true,"published_at":"2026-09-03T20:17:24.21+00:00","url":"https://junglewise.ai/threats/cve-2026-85046-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2026-2441","cvss":8.8,"epss":0.2313,"slug":"cve-2026-2441-google-chromium-use-after-free-in-css","title":"Google Chromium use-after-free in CSS","severity":"critical","exploited":true,"published_at":"2026-02-17T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2026-2441-google-chromium-use-after-free-in-css"},{"cve":"CVE-2026-87491","cvss":8.8,"epss":0.0314,"slug":"cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine","title":"Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via","severity":"critical","exploited":true,"published_at":"2026-09-09T01:17:05.887+00:00","url":"https://junglewise.ai/threats/cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine"},{"cve":"CVE-2025-6558","cvss":8.8,"epss":0.0033,"slug":"cve-2025-6558-google-chromium-improper-input-validation-in-angle-and-gpu","title":"Google Chromium improper input validation in ANGLE and GPU","severity":"critical","exploited":true,"published_at":"2025-07-22T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-6558-google-chromium-improper-input-validation-in-angle-and-gpu"},{"cve":"CVE-2025-14174","cvss":8.8,"epss":0.0031,"slug":"cve-2025-14174-google-chromium-out-of-bounds-memory-access-in-angle","title":"Google Chromium out of bounds memory access in ANGLE","severity":"critical","exploited":true,"published_at":"2025-12-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-14174-google-chromium-out-of-bounds-memory-access-in-angle"},{"cve":"CVE-2022-3723","cvss":8.8,"slug":"cve-2022-3723-google-chromium-v8-type-confusion-vulnerability","title":"Google Chromium V8 Type Confusion Vulnerability","severity":"critical","exploited":true,"published_at":"2022-10-28T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-3723-google-chromium-v8-type-confusion-vulnerability"},{"cve":"CVE-2021-21166","cvss":8.8,"slug":"cve-2021-21166-google-chromium-race-condition-vulnerability","title":"Google Chromium Race Condition Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-21166-google-chromium-race-condition-vulnerability"},{"cve":"CVE-2025-6554","cvss":8.1,"epss":0.0158,"slug":"cve-2025-6554-google-chromium-v8-type-confusion-in-javascript-engine","title":"Google Chromium V8 type confusion in JavaScript engine","severity":"critical","exploited":true,"published_at":"2025-07-02T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-6554-google-chromium-v8-type-confusion-in-javascript-engine"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}