Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.6

CVE-2026-15113: Google Chrome Android Autofill Sandbox Escape

CVE-2026-15113 CVE-2026-15113
Summary

A remote attacker could potentially escape Google Chrome's security sandbox on Android devices, allowing them to access sensitive data and potentially take control of the device. This affects all Android users who have Google Chrome installed. Users should update their Google Chrome app to the latest version to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
google chrome < 150.0.7871.115
Original title
Use after free in Autofill in Google Chrome on Android prior to 150.0.7871.115 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity...
Original description
Use after free in Autofill in Google Chrome on Android prior to 150.0.7871.115 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Vulnerability type
CWE-416 Use After Free
Published: 8 Jul 2026 · Updated: 23 Jul 2026 · First seen: 8 Jul 2026