[Security Vulnerability Alert] Chromium-based browsers contain 21 high-risk security vulnerabilities. Please identify and patch them as soon as possible.

 
2026/4/10 ~ 2026/10/10
View Count:15

Forwarded from the National Cybersecurity Information Sharing and Analysis Center: Cybersecurity Alert NISAC-200-202604-00000003

[Content Description]
Researchers have discovered 21 high-risk security vulnerabilities (CVE-2026-5272 to CVE-2026-5292) in Chromium-based browsers such as Google Chrome, Microsoft Edge, Vivaldi, Brave, and Opera. These vulnerabilities include buffer overflows and use-after-free vulnerabilities. In the most serious cases, unauthenticated remote attackers could use specially crafted HTML pages to escape the browser sandbox and execute arbitrary code. CVE-2026-5281 has already been exploited by hackers; please confirm and patch it as soon as possible.

[Affected Platforms]
Google Chrome versions prior to 146.0.7680.177 (excluding 146.0.7680.177)
Microsoft Edge versions prior to 146.0.3856.97 (excluding 146.0.3856.97)
Vivaldi versions prior to 7.9.3970.47 (excluding 7.9.3970.47)
Brave versions prior to 1.88.138 (excluding 1.88.138)
Opera versions prior to 129.0.5823.65 (excluding 129.0.5823.65)

[Recommended Measures]
1. Please update Google Chrome to version 146.0.7680.178 (inclusive) or later. https://support.google.com/chrome/answer/95414?hl=zh-Hant

2. Please update Microsoft Edge to version 146.0.3856.97 (inclusive) or later. https://support.microsoft.com/zh-tw/topic/microsoft-edge-%E6%9B%B4%E6%96%B0%E8%A8%AD%E5%AE%9A-af8aaca2-1b69-4870-94fe-18822dbb7ef1

3. Please update Vivaldi browser to version 7.9.3970.47 or later. https://help.vivaldi.com/desktop/install-update/update-vivaldi/

4. Please update Brave browser to version 1.88138 or later. https://community.brave.com/t/how-to-update-brave/384780

5. Please update Opera browser to version 129.0.5823.65 or later. https://help.opera.com/en/latest/crashes-and-issues/#updateBrowser

[References]
1. https://support.google.com/chrome/answer/95414?hl=zh-Hant
2. https://support.microsoft.com/zh-tw/topic/microsoft-edge-%E6%9B%B4%E6%96%B0%E8%A8%AD%E5%AE%9A-af8aaca2-1b69-4870-94fe-18822dbb7ef1
3. https://help.vivaldi.com/desktop/install-update/update-vivaldi/
4. https://community.brave.com/t/how-to-update-brave/384780
5. https://help.opera.com/en/latest/crashes-and-issues/#updateBrowser
6. https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_31.html
7. https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-5281
8. https://vivaldi.com/blog/desktop/minor-update-four-7-9/
9. https://brave.com/latest/
10. https://blogs.opera.com/security/2026/04/update-your-browser-security-fix-for-chrome-zero-day-cve-2026-5281/

Files
None
Top↑