Google eliminated a record 429 vulnerabilities in Chrome, including 22 that were critical.
Chrome 149 – update with many fixes and new features
Google released new versions of the Chrome browser: Chrome 149 for Windows and macOS, and Chrome 149 for Linux, which addressed 429 vulnerabilities, including 22 critical ones. According to Google, none of the discovered issues have been exploited by attackers yet. Security researchers were paid $209,000 for their work on them.
What was fixed
Category | Number of Vulnerabilities | Critical (CVE‑2026‑10881…10902) | High Risk | Medium Risk | Low Risk
--- | --- | --- | --- | ---
Total | 429 | 22 | 87 | 226 | 94
Types of bugs:
* Use after free (UAF) – 110 cases
* Insufficient input validation – 88 cases
* Incorrect implementation – 60 cases
The most “severe” problems were in the WebGL Angle library (37 fixes). Next were the extensions interface and media handling – 18 fixes each. Media codecs had 28 bugs fixed.
New functionality
* PDF editing – you can now fill out, annotate, and sign documents directly in the browser (a similar feature already exists in Firefox).
* The “What’s new” page mentions only these tools; other promised features (vertical tab layout, full‑screen reading mode) are not yet implemented. They’re expected to appear in Chrome 150 (end of June).
How to update
Chrome usually updates automatically. For a manual check:
Menu → Help → About Google Chrome (or Settings → About Google Chrome).
Mobile versions
* Android – version 149.0.7827.59 was released this week, fixing the same vulnerabilities as the desktop builds.
* iOS – update 149.0.7827.45 was released last week.
The extended stable channel for Windows and macOS now uses Chromium 148.0.7778.254.
Thus, Chrome 149 not only significantly improved security but also expanded PDF document capabilities, continuing to turn the built‑in viewer into a full‑featured editor.
Comments (0)
Share your thoughts — please be polite and stay on topic.
Log in to comment