Browser Security
The latest Browser Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Microsoft Edge June 2026 Update Closes Password Disclosure Flaw (CVE-2026-12446)
Microsoft has issued a security patch for its Edge browser, addressing a Chromium-based vulnerability that could allow unauthorized access to saved passwords. The flaw, designated CVE-2026-12446, is...
Google Patches Windows-Only Chrome Video Flaw as NVD Publishes CVE-2026-11696
Google has quietly shipped a fix for a video-component vulnerability in Chrome that affects only Windows users, just as the National Vulnerability Database (NVD) published the official entry on June...
Google Chrome 149 Patches High-Severity Site Isolation Bypass Vulnerability (CVE-2026-11693)
Google pushed out Chrome 149.0.7827.103 on June 8, 2026, to stamp out a high-severity security hole that let attackers circumvent the browser's Site Isolation defenses after compromising a renderer...
Google Patches High-Severity Use-After-Free in Chrome's PDF Viewer with Emergency Update
Google has released an emergency update for its Chrome browser on Windows, macOS, and Linux, closing a high-severity use-after-free vulnerability in the built-in PDF viewer. Tracked as...
CVE-2026-11659: Google Urges Immediate Patching for Chrome Sandbox Escape on Linux
Google released a critical security update for its Chrome web browser on June 8, 2026, patching a high-severity vulnerability that could allow remote attackers to break out of the browser’s...
Chrome's CVE-2026-11637 Use-After-Free Bug Enables Remote Code Execution—Here's Why Windows IT Must Act
Google has patched a critical use-after-free vulnerability in Chrome for macOS that could allow remote attackers to execute arbitrary code by luring a victim to a specially crafted web page. Tracked...
Chrome 149 Emergency Fix Closes CVE-2026-12017 — High‑Severity Site Isolation Bypass via Extensions
Google shipped Chrome 149.0.7827.114 for Windows and Mac and 149.0.7827.115 for Linux on June 11, 2026, plugging a high‑severity hole that let a compromised renderer slip past Site Isolation by...
Google Patches High‑Severity Use‑After‑Free Flaw in Chrome’s Network Component (CVE‑2026‑12012)
Google rolled out an urgent stable channel update for Chrome on Windows, macOS, and Linux on June 11, 2026, dismantling a high‑severity use‑after‑free vulnerability that lived inside the...
Microsoft Edge Stable Shifts to 2-Week Releases: What IT Admins Must Know
Microsoft will shorten the release cycle for its Edge browser beginning with version 152, expected on August 27, 2026. The shift from a four-week major release cadence to a two-week rhythm marks a...
Google Chrome Android CVE-2026-11278: Urgent Fix for Custom Tabs Data Leak
Google has confirmed CVE-2026-11278, a high-severity information disclosure vulnerability in Chrome for Android versions prior to 149.0.7827.53. The flaw resides in Chrome Custom Tabs and could allow...
CVE-2026-11270: Chrome for Android 149.0.7827.53+ Fixes Critical Cross-Origin Leak
Google has disclosed a critical security flaw in Chrome for Android that allows remote attackers to siphon cross-origin data from unsuspecting users. Designated CVE-2026-11270, the vulnerability...
Chrome Android CVE-2026-10967 Sandbox Escape: Update Now
Google has disclosed a critical vulnerability in its Chrome browser for Android, tracked as CVE-2026-10967, that allows attackers to escape the browser’s protective sandbox and potentially execute...