Incorrect authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)
CVE-2026-87591
NONE
EPSS 0.20%
Updated Sep 09, 2026
Google
CVE Details
CVE ID
CVE-2026-87591
Published Date
Sep 09, 2026
Vendor
Google
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.20%
Likelihood of exploitation in next 30 days
Percentile:
9.4th percentile (higher than 9.4% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory