【Vulnerability Alert】Chromium-Based Browsers Have 74 High-Risk Security Vulnerabilities. Please Confirm and Apply Patches as Soon as Possible.

publish date : 2026-06-22 update date : 2026-06-22

Source: Ministry of education information & communication security contingency platform

"" "" ""

Publication Number TACERT-ANA-2026061708060303 Publication Time 2026-06-17 08:46:03
Incident Type ANA-Vulnerability Alert Discovery Time 2026-06-17 08:46:03
Impact Level Low  
[Subject]
【Vulnerability Alert】Chromium-Based Browsers Have 74 High-Risk Security Vulnerabilities. Please Confirm and Apply Patches as Soon as Possible.
[Content]

Forwarded from the National Institute of Cyber Security Security Advisory NISAC-200-202606-00000006

Researchers have discovered that Chromium-based browsers such as Google Chrome, Microsoft Edge, Vivaldi, Brave, and Opera have 74 high-risk security vulnerabilities (CVE-2026-11628 to CVE-2026-11701). The types include Use After Free, Out-of-Bounds Memory Access, and others. The most severe vulnerability may allow an unauthenticated remote attacker to induce users to open a specially crafted HTML page, thereby executing arbitrary code within the browser sandbox environment. Among them, CVE-2026-11645 has been exploited by hackers. Please confirm and apply patches as soon as possible.

Information Sharing Level: WHITE (the intelligence content is information that may be publicly disclosed)

[Affected Platform]

Google Chrome versions earlier than 149.0.7827.102, not inclusive

Microsoft Edge versions earlier than 149.0.4022.62, not inclusive

Vivaldi versions earlier than 8.0.4033.46, not inclusive

Brave versions earlier than 1.91.171, not inclusive

Opera versions earlier than 132.0.5905.37, not inclusive

[Recommended Actions]

[Reference]

1. https://support.google.com/chrome/answer/95414?hl=zh-Hant
2. https://support.microsoft.com/zh-tw/topic/microsoft-edge-%E6%9B%B4%E6%96%B0%E8%A8%AD%E5%AE%9A-af8aaca2-1b69-4870-94fe-18822dbb7ef1
3. https://help.vivaldi.com/desktop/install-update/update-vivaldi/
4. https://community.brave.com/t/how-to-update-brave/384780
5. https://help.opera.com/en/latest/crashes-and-issues/#updateBrowser
6. https://chromereleases.googleblog.com/2026/06/stable-channel-update-for-desktop_0153744567.html
7. https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security
9. https://vivaldi.com/blog/desktop/tabs-and-site-info-vivaldi-browser-snapshot-4070-3/
10. https://brave.com/latest/
11. https://blogs.opera.com/security/2026/06/update-your-browser-security-fix-for-chrome-zero-day-cve-2026-11645/

(This notification is for informational purposes only and does not constitute a cybersecurity incident).
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
Organizer: Computer Center