Use after free in WebGL in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
https://thehackernews.com/2026/09/chrome-v8-zero-day-exploited-in-wild.html
https://issues.chromium.org/issues/546252753
https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_0808145027.html