CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2026-87534 — Critical vulnerability brief

September 9, 2026CVSS 9.8

Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via crafted network traffic. (Chromium security severity: Medium)

CVSS base score: 9.8 / 10

View NVD record