Google has released an updated Chrome version 149.0.7827.114/.115 for Windows and Mac, and 149.0.7827.114 for Linux.
The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, trigger memory corruption, gain elevated privileges, obtain sensitive information, bypass security restrictions, or execute arbitrary code on the affected system via a crafted HTML page.
Sample of the addressed vulnerabilities:
1. Google Chrome Headless Insufficient Policy Enforcement Vulnerability (CVE- 2026-12027):
2. Google Chrome Core Use-After Free Vulnerability (CVE-2026-12007):
The enterprise should deploy this patch as soon as the testing phase is completed.
| Cookie | Duration | Description |
|---|---|---|
| cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
| cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
| cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
| cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
| cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
| viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |