Skip to content

Google Chrome Known Exploited Vulnerabilities - 20260317001

Overview

Google Chrome has released a high security advisory addressing vulnerabilities that could allow remote code execution by an attacker affecting Google Chrome products. Google is aware of exploitation in the wild for one or more of the mentioned items.

What is vulnerable?

Product(s) Affected Version(s) CVE CVSS Severity
Chromium-based Browsers
- Google Chrome
- Microsoft Edge
- Brave
- Opera
- Vivaldi
all versions prior to 146.0.7680.75/76 for Windows/Mac
all versions prior to 146.0.7680.75 for Linux
CVE-2026-3909
CVE-2026-3910
8.8
8.8
High
High

Please Note: Google have noted CVE-2026-3909 has been mentioned within the security notes, however an official fix has not been released at the time of writing, and will be available in a future update.

What has been observed?

CISA added one or more of the mentioned items in their Known Exploited Vulnerabilities catalog. The WA SOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.

Recommendation

The WASOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):

Additional References