Back to advisories

Chrome 148 Update Patches 151 Vulnerabilities

Google released Chrome 148 patching 151 vulnerabilities, including 22 critical-severity flaws that enable remote code execution and sandbox escape. CVE-2026-9872 and CVE-2026-9873 are the most severe, allowing attackers to break out of the Chrome sandbox and execute arbitrary code. This affects all Chrome users and is a high-value target for both targeted and mass exploitation.

CRITICALAdvisoryMay 31, 2026
Action required
Enforce Chrome 148 deployment across all endpoints immediately. Prioritize patching for users in high-risk roles and internet-facing systems. Monitor for suspicious Chrome process behavior, unexpected child processes, and GPU-related crashes as potential exploitation indicators.
Affected products
Chrome 148Google