Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 09 Sep 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google chrome Microsoft Microsoft windows |
Wed, 09 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 09 Sep 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Race Condition in Chrome Updater Enabling Local Code Execution Outside Sandbox on Windows |
Wed, 09 Sep 2026 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium) | |
| Weaknesses | CWE-367 | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-09-09T14:20:05.312Z
Reserved: 2026-09-08T22:37:28.923Z
Link: CVE-2026-87457
Updated: 2026-09-09T14:20:00.452Z
Status : Analyzed
Published: 2026-09-09T01:17:02.107
Modified: 2026-09-09T17:03:32.610
Link: CVE-2026-87457
No data.
OpenCVE Enrichment
Updated: 2026-09-09T08:00:09Z
-
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition