Forwarded from the National Cybersecurity Information Sharing and Analysis Center: Cybersecurity Alert NISAC-200-202602-00000089
[Content Description]
Researchers have discovered high-risk security vulnerabilities (CVE-2026-1861 and CVE-2026-1862) in Chromium-based browsers such as Google Chrome, Microsoft Edge, Vivaldi, and Brave. The vulnerabilities are Heap-based Buffer Overflow and Type Confusion, respectively. Unauthenticated remote attackers could use specially crafted websites to cause the browsers to terminate abnormally. Please confirm and patch these vulnerabilities as soon as possible.
[Affected Platforms]
Google Chrome versions prior to 144.0.7559.132
Microsoft Edge versions prior to 144.0.3719.115
Vivaldi versions prior to 7.7.3851.58
Brave versions prior to 1.86.148
[Recommended Measures]
1. Please update Google Chrome to version 144.0.7559.132 or later: https://support.google.com/chrome/answer/95414?hl=zh-Hant
2. Please update Microsoft Edge to version 144.0.3719.115 or later. https://support.microsoft.com/zh-tw/topic/microsoft-edge-%E6%9B%B4%E6%96%B0%E8%A8%AD%E5%AE%9A-af8aaca2-1b69-4870-94fe-18822dbb7ef1
3. Please update Vivaldi browser to version 7.8.3925.62 or later. https://help.vivaldi.com/desktop/install-update/update-vivaldi/
4. Please update Brave browser to version 1.86148 or later. https://community.bravecom/t/how-to-update-brave/384780