Observable discrepancy in Google Chromium - CVE-2026-87623
Published: September 9, 2026
Vulnerability identifier: #VU148648
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-87623
CWE-ID: CWE-203
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to disclose information.
The vulnerability exists due to an observable discrepancy in the DOM when rendering crafted web content. A remote attacker can cause an observable discrepancy in the DOM to disclose information.
User interaction is required to render the crafted web content.
Affected software
Google Chromium
Google Chrome
Google Chrome
How to mitigate CVE-2026-87623
Install security update from vendor's website.
Google Chromium - update to 153.0.8010.36
Google Chrome - update to 153.0.8010.36
Google Chrome - update to 153.0.8010.36