Chrome Security
The latest Chrome Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Chrome 150 Emergency Update Closes Accessibility Backdoor to Cross-Site Data
Google shipped an urgent update for Chrome on Wednesday, version 150.0.7871.47, plugging a vulnerability that let attackers bypass the browser’s site isolation defenses if they first compromised a...
Google Chrome 150 Emergency Patch Plugs QUIC Memory Leak That Could Hijack PCs
Google has quietly pushed out a critical security patch for the Chrome browser on Windows, macOS, and Linux, fixing a memory corruption bug that could let attackers hijack your PC simply by luring...
Critical Chrome Update Patches Sandbox Escape Vulnerability on Windows and Mac
Google released a security update for Chrome on June 30, 2026, fixing a high-severity vulnerability that could allow attackers to escape the browser’s protective sandbox. The flaw, tracked as...
Chrome 150.0.7871.47 Closes PageInfo UI Spoof That Left Windows Users Open to Phishing
Google released a stable-channel update for Chrome on June 30, 2026, that patches a medium-severity vulnerability allowing remote attackers to spoof the browser’s security UI. The flaw, tracked as...
Fake Browser Dialogs? Chrome 150.0.7871.47 Closes a Sneaky UI Spoofing Hole
Google shipped a targeted fix on June 30, 2026, addressing a medium-severity vulnerability in Chromium’s Paint component that could have let remote attackers spoof the browser’s interface. The...
Google Patches High-Severity UXSS Flaw in Chrome 150 – Attackers Could Inject Malicious Scripts
Google shipped an emergency update for Chrome on June 30, fixing a high-severity universal cross-site scripting (UXSS) bug that let attackers inject arbitrary code into web pages via a crafted XML...
Google Chrome 150.0.7871.47 Fixes Geolocation UI Spoofing Vulnerability
Google shipped a patch on June 30, 2026 that closes a medium-severity flaw in Chrome’s geolocation implementation. Tracked as CVE-2026-14002, the bug could let an attacker who had already...
Google Pushes Chrome 150 Update to Block Extensions from Leaking Cross-Origin Data
Google shipped Chrome 150.0.7871.47 on June 30, 2026, closing a medium-severity vulnerability that could let a malicious browser extension swipe data from websites you visit—even if those sites are...
Chrome 150 Fixes Sneaky CSS Attack That Silently Stole Data Between Tabs
Google shipped an emergency patch in its latest Chrome 150 stable channel update to block a vulnerability that let malicious websites steal sensitive data from other origins simply by injecting...
Chrome 150 Emergency Update Fixes Password Manager Heap Corruption—Immediate Action Required
Google has pushed out Chrome 150 to the stable channel with a critical fix for a high-severity heap corruption vulnerability lurking in the browser’s built-in password manager. The flaw, tracked as...
Chrome 150 Out-of-Bounds Read Fix: Why a ‘Medium’ Severity Bug Still Demands Immediate Action
On June 30, 2026, Google shipped a stable channel update for Chrome 150 that patches CVE-2026-14011, an out-of-bounds read vulnerability in the browser’s SurfaceCapture component. The flaw is...
Chrome CSS side-channel attack leaks sensitive data on Windows: Patch released
Google disclosed a medium-severity security flaw in its Chrome browser on June 30, 2026, that could let attackers read sensitive information from your computer's memory just by tricking you into...