Google Chrome
Stable Channel Update for Desktop: 154.0.8037.97/.98
154.0.8037.97/.98 Oct 1, 2026 Source: Vendor
Imported by the Chrome release catcher from https://chromereleases.googleblog.com/2026/10/stable-channel-update-for-desktop.html. 11 security entries listed. Draft. Review before publishing.
Source of record
The credited names below are quoted verbatim from the vendor's own advisory:
https://chromereleases.googleblog.com/2026/10/stable-channel-update-for-desktop.html
Are you credited here?
Sign in and claim your line: it is yours immediately, no review queue.
The name the vendor printed stays next to your handle for anyone to check against the advisory above,
and any member who thinks a claim is wrong can refute it.
Credited
12 lines
Showing 1–12 of 12
CVE-2026-103628
BR2026-0000-019194
WebGL
unclaimed
Critical: Out of bounds write in WebGL (reported 2026-08-21)
Credited as Google
CVE-2026-103626
BR2026-0000-019195
FileSystem
unclaimed
High: Incorrect authorization in FileSystem (reported 2026-08-26)
Credited as Google
CVE-2026-103621
BR2026-0000-019196
Compositing
unclaimed
High: Integer overflow in Compositing (reported 2026-09-02)
Credited as Google
CVE-2026-103630
BR2026-0000-019197
FedCM
unclaimed
High: Use after free in FedCM (reported 2026-09-04)
Credited as xinyang
CVE-2026-103625
BR2026-0000-019198
V8
unclaimed
High: Type confusion in V8 (reported 2026-09-11)
Credited as Google
CVE-2026-103624
BR2026-0000-019199
Contextual Tasks
unclaimed
High: Use after free in Contextual Tasks (reported 2026-09-15)
Credited as xuanocto1221
CVE-2026-103629
BR2026-0000-019200
Skia
unclaimed
High: Integer overflow in Skia (reported 2026-09-15)
Credited as Google
CVE-2026-103622
BR2026-0000-019201
SVG
unclaimed
High: Use after free in SVG (reported 2026-09-24)
Credited as xinyang
CVE-2026-103623
BR2026-0000-019202
MediaStream
unclaimed
High: Use after free in MediaStream (reported 2026-09-24)
Credited as xinyang
CVE-2026-103631
BR2026-0000-019203
WebRTC
unclaimed
High: Buffer overflow in WebRTC (reported 2026-09-28)
Credited as Xinyang Ge (Anthropic)
CVE-2026-103631
BR2026-0000-019204
WebRTC
unclaimed
High: Buffer overflow in WebRTC (reported 2026-09-28)
Credited as assisted by Claude
CVE-2026-103627
BR2026-0000-019205
SVG
unclaimed
Medium: Information leak in SVG (reported 2026-08-26)
Credited as Google