What is CVE-2026-17651?
This critical vulnerability exists in the Dawn component of Google Chrome on Android versions prior to 151.0.7922.72 due to insufficient validation of untrusted input. A remote attacker could potentially perform a sandbox escape via a crafted HTML page. Users should immediately update their browser to the latest version.
Azərbaycanca: Bu kritik boşluq Android üçün Google Chrome-un 151.0.7922.72-dən əvvəlki versiyalarında Dawn komponentində kifayət qədər yoxlanılmamış giriş məlumatları ilə bağlıdır. Uzaqdan hücumçu xüsusi hazırlanmış HTML səhifə vasitəsilə sandbox mühafizəsindən yayına bilər. İstifadəçilər dərhal brauzerlərini ən son versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: Google
FAQ2
What should I do to protect against CVE-2026-17651?
You should update your Google Chrome browser on Android to at least version 151.0.7922.72.
In which component was CVE-2026-17651 discovered and how can the attack occur?
The vulnerability exists in the Dawn component of Google Chrome. A remote attacker could escape the sandbox via a specially crafted HTML page.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.