What is CVE-2026-17684?
An insufficient validation of untrusted input vulnerability in Google Chrome for iOS prior to version 151.0.7922.72 could allow a remote attacker who compromised the renderer process to potentially escape the sandbox via a crafted HTML page. Users should update Chrome for iOS to the latest version immediately.
Azərbaycanca: Google Chrome-un iOS versiyasında (151.0.7922.72-dən əvvəlki) etibarsız daxiletmənin kifayət qədər yoxlanılmaması zəifliyi aşkar edilib. Renderer prosesini ələ keçirmiş uzaqdan təcavüzkar xüsusi hazırlanmış HTML səhifə vasitəsilə sandbox mühitindən qaça bilər. İstifadəçilər dərhal brauzeri son versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: Google
FAQ2
Which software is affected by CVE-2026-17684 and what versions are at risk?
CVE-2026-17684 affects the iOS version of Google Chrome. Specifically, versions prior to 151.0.7922.72 are vulnerable to this issue.
What prerequisite must an attacker meet to exploit CVE-2026-17684?
The attacker must first compromise the renderer process, then potentially escape the sandbox via a crafted HTML page.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.