Observable discrepancy in Google Chromium - CVE-2026-87623

 

Observable discrepancy in Google Chromium - CVE-2026-87623

Published: September 9, 2026


Vulnerability identifier: #VU148648
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-87623
CWE-ID: CWE-203
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to disclose information.

The vulnerability exists due to an observable discrepancy in the DOM when rendering crafted web content. A remote attacker can cause an observable discrepancy in the DOM to disclose information.

User interaction is required to render the crafted web content.


Affected software

Google Chromium
Google Chrome

How to mitigate CVE-2026-87623

Install security update from vendor's website.

Google Chromium - update to 153.0.8010.36
Google Chrome - update to 153.0.8010.36

External References

Related Security Bulletins