Google has been pushing out security updates left and right. The latest release is rolling out as version 153.0.8010.52/.53 on Windows and Mac, alongside 153.0.8010.52 on Linux.
This comes hot on the heels of the previous update that rolled out a couple of days ago with fixes for 42 vulnerabilities.
In the release notes for the latest update, Google says that the update addresses 16 security vulnerabilities. Two of these are rated as critical. So it’s one of those updates that you’ll not want to ignore.
The CVEs that are rated as critical mess with low-level graphics components. One is an issue inside Dawn, which handles WebGPU rendering, and the other is a memory buffer flaw sitting inside WebGL. The former is listed as CVE-2026-93374 and was reported by Florian Schweitzer. No reward amount has been set for this one yet. The latter was reported by Google itself.
To keep things simple, these kinds of memory bugs are the bad ones. If a sketchy website figures out how to trigger them, someone could potentially break out of the browser’s sandbox and run unauthorized code on your computer.
The other patches tackle vulnerabilities that are rated as high, medium, and low in severity. One high-severity issue, CVE-2026-93375, that was reported by M. Fauzan Wijaya (Gh05t666nero) got a reward of $3,000.
Google kept specific exploit details locked down for now, pointing out that “access to bug details and links may be kept restricted until a majority of users are updated with a fix.”
It has been a relentless few weeks of patching. Earlier this month, we covered another release that tackled 26 security flaws, meaning we have seen critical zero-days and memory bugs get patched practically every week.
