Chrome 152 patches 327 flaws; 299 found by Google’s AI
Google released Chrome 152 on Tuesday, fixing 327 vulnerabilities. Ten are critical and 299 of the patched flaws were discovered internally using AI.
Google released Chrome 152 on Tuesday with patches for 327 distinct security flaws. Ten of the vulnerabilities were rated critical, 61 were rated high severity and the remainder were classified as medium or low. Google reported that 299 of the 327 fixed issues were discovered internally using AI.
Most of the critical problems were use-after-free bugs affecting components including Angle, Aura, Chromecast, Views and SafeBrowsing. Google’s advisory did not report any of the patched flaws being exploited in the wild.
A use-after-free vulnerability occurs when software tries to access memory after that memory has been released. Such errors can allow attackers to crash a program or, in some cases, execute arbitrary code if other conditions are met.
External researchers were paid for several findings. A researcher known as Goodluck received $25,000 for a critical flaw tracked as CVE-2026-79282. Several other researchers received four-figure bounties for vulnerabilities fixed in this release. Google’s bug bounty program continues to issue rewards for both internal and external reports.
Google attributed the large share of discoveries to internal AI tools and reported that the use of AI has increased the number of vulnerabilities it has found this year. Independent researchers have continued to report significant defects in the browser.
Chrome updates have addressed more than 2,000 vulnerabilities so far this year. Regular releases and the bounty program are part of Google’s process for identifying and fixing browser security issues.








