Chrome 152 Update Fixes 327 Vulnerabilities

Google Chrome 152 Patches 327 Flaws, Including 10 Critical Bugs

HIGH
August 26, 2026
4m read
Patch ManagementVulnerability

Related Entities

Organizations

Products & Tech

Google ChromeANGLEAuraChromecastViewsSafe BrowsingV8WebRTC

CVE Identifiers

CVE-2026-79282
CRITICAL
CVE-2026-79290
CRITICAL
CVE-2026-79054
CRITICAL
CVE-2026-79121
CRITICAL
CVE-2026-79224
CRITICAL
CVE-2026-79052
CRITICAL
CVE-2026-79150
CRITICAL
CVE-2026-78935
CRITICAL
CVE-2026-79012
CRITICAL
CVE-2026-79200
CRITICAL

Full Report

Executive Summary

Google has released Chrome version 152 to the stable desktop channel, delivering one of the largest security updates in the browser's history. The update, announced on August 25, 2026, addresses a total of 327 security vulnerabilities. Among these are 10 flaws rated as critical and 61 rated as high-severity. The majority of the critical vulnerabilities are use-after-free memory corruption bugs, which could allow a remote attacker to execute arbitrary code on a user's system. All Chrome users on Windows, macOS, and Linux are urged to apply the update immediately to mitigate the significant security risks.


Vulnerabilities Addressed

The Chrome 152 update is a comprehensive security release, patching a wide array of vulnerabilities across numerous browser components. The most severe issues include:

  • 10 Critical Vulnerabilities: Primarily use-after-free flaws that can lead to arbitrary code execution. A successful exploit typically involves tricking a user into visiting a specially crafted malicious website.
  • 61 High-Severity Vulnerabilities: Including type confusion bugs in the V8 JavaScript engine and out-of-bounds writes.
  • 184 Medium-Severity Vulnerabilities.
  • 72 Low-Severity Vulnerabilities.

Notable critical vulnerabilities fixed in this release include:

Description
Use-after-free
Component
ANGLE
Description
Use-after-free
Component
Aura
Description
Use-after-free
Component
Aura
Description
Use-after-free
Component
Chromecast
Description
Use-after-free
Component
Chromecast

Affected Products

  • Google Chrome for Desktop (Windows, macOS, and Linux) versions prior to 152.0.7977.64/.65.

Users can update their browser by navigating to Settings > About Chrome. The browser will automatically check for and download the update.


Impact Assessment

The vulnerabilities rated critical pose a severe threat. If an attacker successfully exploits one of these flaws, they could execute arbitrary code within the context of the browser. Depending on the browser's permissions, this could lead to:

  • Installation of malware, spyware, or ransomware on the user's system.
  • Theft of sensitive information, such as cookies, passwords, and personal data.
  • Complete takeover of the user's machine.

The attack vector for these types of vulnerabilities is typically a malicious website. An attacker would need to convince a user to visit the site, after which the exploit could be triggered without any further user interaction.


Patch Details

This update is notable for the sheer volume of fixes. Google credited its internal security teams for discovering 299 of the 327 vulnerabilities, highlighting the success of its internal fuzzing and security analysis efforts, which are increasingly augmented by AI. As is standard practice, Google has restricted access to the full technical details of the bugs to give users time to patch. The advisory did not indicate that any of the 327 vulnerabilities were being actively exploited in the wild at the time of release.


Deployment Priority

CRITICAL. Due to the number and severity of the vulnerabilities fixed, this update should be deployed with the highest priority. All organizations and individual users should ensure their Chrome browsers are updated to version 152.0.7977.64/.65 or later as soon as possible.


Installation Instructions

  1. Open Google Chrome.
  2. Click the three-dot menu in the top-right corner.
  3. Go to Help > About Google Chrome.
  4. Chrome will automatically check for the update and start downloading it.
  5. After the download is complete, click the Relaunch button to apply the update.

Cyber Observables — Hunting Hints

The following patterns may help identify unpatched systems:

Type
other
Value
Chrome User-Agent String
Description
Systems with User-Agent strings indicating a Chrome version below 152.0.7977.64 are vulnerable.
Type
log_source
Value
Asset Management System
Description
Query for installed software versions to identify all hosts running a vulnerable version of Google Chrome.
Type
log_source
Value
Vulnerability Scanner Results
Description
Scan results will flag outdated Chrome installations.

Timeline of Events

1
August 25, 2026
Google begins rolling out Chrome 152 to the stable channel for desktop users.
2
August 26, 2026
This article was published

MITRE ATT&CK Mitigations

The only effective mitigation is to update Google Chrome to the latest patched version.

Mapped D3FEND Techniques:

Use web filtering to block access to known malicious or untrusted websites that could host exploits.

Mapped D3FEND Techniques:

D3FEND Defensive Countermeasures

The primary and most effective countermeasure against the 327 vulnerabilities in Google Chrome is immediate and comprehensive patching. Organizations must enforce policies to ensure all instances of Chrome on desktops and servers are updated to version 152.0.7977.64/.65 or later. This can be achieved through centralized software management tools (e.g., SCCM, Jamf, Intune) that can push the update and force a relaunch of the browser. For unmanaged devices, user communication is key, instructing them to manually check for updates via the 'About Google Chrome' page. Given the critical nature of the use-after-free flaws, this update should be treated as an emergency patch.

Timeline of Events

1
August 25, 2026

Google begins rolling out Chrome 152 to the stable channel for desktop users.

Sources & References

Chrome 152 Patches Over 300 Vulnerabilities
SecurityWeek (securityweek.com)
Stable Channel Update for Desktop
Google Chrome Releases (googleblog.com)

Article Author

Jason Gomes

Jason Gomes

• Cybersecurity Practitioner

Cybersecurity professional with over 10 years of specialized experience in security operations, threat intelligence, incident response, and security automation. Expertise spans SOAR/XSOAR orchestration, threat intelligence platforms, SIEM/UEBA analytics, and building cyber fusion centers. Background includes technical enablement, solution architecture for enterprise and government clients, and implementing security automation workflows across IR, TIP, and SOC use cases.

Threat Intelligence & AnalysisSecurity Orchestration (SOAR/XSOAR)Incident Response & Digital ForensicsSecurity Operations Center (SOC)SIEM & Security AnalyticsCyber Fusion & Threat SharingSecurity Automation & IntegrationManaged Detection & Response (MDR)

Editorial Standards & Analyst Review

CyberNetSec.io uses automation to assist source monitoring, deduplication, observable extraction, and structured intelligence generation. Published analysis follows human-defined editorial standards and adds defensive context including MITRE ATT&CK, D3FEND, STIX, and Sigma where applicable. Read our editorial policy.

Tags

Google ChromeUse-after-freeRCEMemory CorruptionBrowser Security

📢 Share This Article

Help others stay informed about cybersecurity threats

🎯 MITRE ATT&CK Mapped

Every tactic, technique, and sub-technique used in this threat has been identified and mapped to the MITRE ATT&CK framework for consistent, actionable threat language.

🧠 Enriched & Analyzed

Observables and indicators of compromise (IOCs) have been extracted and cataloged. Risk has been assessed and correlated with known threat actors and historical campaigns.

🛡️ Actionable Guidance

Detection rules, incident response steps, and D3FEND-aligned mitigation strategies are included so your team can act on this intelligence immediately.

🔗 STIX Visualizer

Structured threat data is packaged as a STIX 2.1 bundle and can be visualized as an interactive graph — relationships between actors, malware, techniques, and indicators.

Sigma Generator

Sigma detection rules are derived from the threat techniques in this article and can be converted for deployment across any major SIEM or EDR platform.