Skip to content

Chrome Multiple Critical Vulnerabilities - 20260831001

Overview

The WASOC has been made aware of a Google Chrome Stable Channel update addressing multiple security vulnerabilities, including two Critical vulnerabilities that could allow a remote attacker to execute arbitrary code outside the browser sandbox by convincing a user to visit a specially crafted webpage.

What is vulnerable?

Products Affected CVE CVSS Severity
Chromium-based Browsers
- Google Chrome
- Microsoft Edge
- Brave
- Vivaldi
CVE-2026-79290
CVE-2026-11282
CVE-2026-78904
9.6
9.6
9.6
Critical
Critical
Critical

What has been observed?

The WASOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.

Recommendation

The WASOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):