The stable channel now has Chrome versions 144.0.7559.109 and 144.0.7559.110, which fix a serious security flaw in the Background Fetch API This article explores flaw background fetch. . Users must make sure their browsers are fully updated as the update will be rolling out over the next few days and weeks for Windows, Mac, and Linux systems.
CVE-2026-1504, a high-severity vulnerability impacting the Background Fetch API implementation, is the focus of the security patch. Threat actors may be able to take advantage of this vulnerability, which was found to be an improper implementation.
CVSS Score Component Reporter for CVE ID Vulnerabilities CVE-2026-1504 Bounty Status Implementation of the Background Fetch API inappropriately 7.5 API for Background Fetch Herrera Luan (@lbherrera_) $3000 144.0.7559.109/.110 has been fixed. Security researcher Luan Herrera found and reported the problem on January 9, 2026, and Google's Vulnerability Reward Program has awarded a $3,000 bug bounty. Web apps can download big files in the background even after the user has closed the browser tab or left the website thanks to a web standard called the Background Fetch API.
Malicious actors may be able to alter background fetch operations thanks to this implementation's vulnerability. However, until the majority of users receive the patch, specific information about the exploitation is still restricted.
This update builds on Chrome's multi-layered security measures, demonstrating the browser's continued dedication to security. To find and stop security flaws from getting to the stable channel, Google uses sophisticated detection tools like AddressSanitizer, MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity, libFuzzer, and AFL. The Chrome 144.0.7559 update started to roll out right away.
To guarantee system stability and enable appropriate monitoring, it will be dispersed gradually over a few weeks. By going into Chrome settings and looking for updates, users can manually initiate the update. Linux users will see 144.0.7559.109, while Windows and Mac users should search for version 144.0.7559.109 or.110. Security experts advise both individual and enterprise users to give this update top priority, especially those who depend on web apps that use the Background Fetch API.
During the update window, organizations overseeing extensive Chrome deployments should keep an eye on the rollout and confirm application compatibility. The official Chrome commit log contains a detailed list of every modification made in this build. If a user is having problems, they should use the Chrome community help forum or the bug reporting system.
To improve Chrome's security posture and stop vulnerabilities from impacting users, Google is still collaborating with security researchers across the globe. X, LinkedIn, and X for daily updates on cybersecurity. To have your stories featured, get in touch with us.












.webp%3Fw%3D1068%26resize%3D1068%2C0%26ssl%3D1&w=3840&q=75)