Google Chrome Security Update – 12 January 2026

Google has released an updated Chrome version 143.0.7499.192/.193 for Windows and Mac, and version 143.0.7499.192 for Linux.

The addressed vulnerability could allow the remote attacker to convince the victim to install a malicious extension to inject scripts or HTML into a privileged page via the crafted Chrome Extension.

Google Chrome Insufficient Policy Enforcement in the WebView Tag Vulnerability (CVE-2026-0628):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Bypass Security
Vulnerabilities

CVE-2026-0628

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Google Chrome Security Update

References