← Intelligence Center

Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution

PublishedJun 25, 2026
Updated
VendorGoogle
SeverityMedium
Known ExploitedNo
Advisory IDINTEL-000008
CVEs
CVE-2026-13281CVE-2026-13282CVE-2026-13283
Products
  • Chrome prior to 149.0.7827.200/201 for Windows and Mac
  • Chrome prior to 149.0.7827.200 for Linux

Executive Summary

MS-ISAC Advisory 2026-062 (issued 6/25/2026): multiple vulnerabilities in Google Chrome, the most severe of which could allow for arbitrary code execution in the context of the logged-on user via drive-by compromise. There are currently no reports of these vulnerabilities being exploited in the wild.

Municipal Impact

MS-ISAC rates the risk as Medium for large, medium, and small government entities.

SMB Impact

MS-ISAC rates the risk as Medium for large, medium, and small business entities and Low for home users.

Recommended Actions

  1. Apply appropriate updates provided by Google to vulnerable systems immediately after appropriate testing.
  2. Ensure use of only fully supported browsers and email clients.
  3. Apply the principle of least privilege to all systems and services.

Grey Matter Analysis

Analysis pending review.

Need help with this advisory?

Contact Grey Matter to assess your exposure and prioritize remediation.

Contact Grey Matter