Google Chrome patches 30 vulns across 147.0.7727.101
Google released Chrome 147.0.7727.101/102 to fix 30 vulnerabilities including heap overflows and use-after-free flaws that could enable arbitrary code execution via drive-by compromise.
Google has patched 30 vulnerabilities in Chrome affecting versions prior to 147.0.7727.101/102 for Windows and macOS, and 147.0.7727.101 for Linux. The flaws span multiple subsystems including ANGLE, Skia, PDFium, V8, and various browser components. The most severe vulnerabilities include heap buffer overflows in ANGLE (CVE-2026-6296), Skia (CVE-2026-6298), and PDFium (CVE-2026-6305, CVE-2026-6306, CVE-2026-6361), as well as numerous use-after-free conditions in Proxy, Prerender, XR, Video, CSS, Codecs, Graphite, Viz, FileSystem, Dawn, Permissions, Forms, Cast, and Payments components. Type confusion issues in Turbofan (CVE-2026-6301, CVE-2026-6307) and V8 (CVE-2026-6363) are also present.
Successful exploitation of these vulnerabilities could allow arbitrary code execution in the context of the logged-on user through drive-by compromise attacks. An attacker could leverage these flaws to install programs, modify or delete data, or create new accounts with the victim's privilege level. The advisory notes there are currently no reports of in-the-wild exploitation. MS-ISAC recommends immediate patching through automated update mechanisms, implementing least-privilege principles, enabling exploit protection features, and deploying web filtering controls.
The sheer volume of vulnerabilities across diverse browser subsystems underscores the complexity of modern browser security and the ongoing challenge of memory-safety issues in C/C++ codebases. Organizations should prioritize rapid deployment of this update while maintaining defense-in-depth controls including application isolation, DNS filtering, and user awareness training to mitigate drive-by compromise risks.
Mentioned in this report
Source reporting: https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-google-chrome-could-allow-for-arbitrary-code-execution_2026-037
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free