Google Chrome Security Update -16 April 2026

Google has released an updated Chrome version 147.0.7727.101/102 for Windows and Mac, and 147.0.7727.101 for Linux.

The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform denial-of service attacks, execute arbitrary code, and gain access to the affected system by persuading the victim to visit a malicious website.

Sample of the addressed vulnerabilities:

1. Google Chrome ANGLE Heap Buffer Overflow Vulnerability (CVE-2026-6296):

  • CVSS: 9.6
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Bypass Security

2. Google Chrome XR Use After Free Vulnerability (CVE-2026-6358):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Obtain Information
Vulnerabilities
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References