Google Chrome Vulnerabilities Allow Remote Code Execution and Spoofing
Google's Chrome browser has been found to have multiple vulnerabilities that could allow a remote attacker to trigger denial of service, security restriction bypass, sensitive information disclosure, spoofing, and even remote code execution on a targeted system.
The Hong Kong Computer Emergency Response Team Coordination Centre (HKCERT) released a security bulletin on September 18, 2026, detailing the vulnerabilities in Chrome prior to version 153.0.8010.52 for Linux, Mac, and Windows operating systems.
The identified vulnerabilities include CVE-2026-93372 through CVE-2026-93387, with a medium risk level assigned by HKCERT. To mitigate these risks, users are advised to apply fixes issued by the vendor, which includes updating to Google Chrome 153.0.8010.52 or later for Linux and Mac, and version 153.0.8010.52/53 or later for Windows.