About this tag
The chrome omnibox tag covers a reported Chromium vulnerability affecting Chrome versions before 150.0.7871.47. CVE-2026-14130 is an Omnibox UI spoofing flaw that could allow a remote attacker to imitate browser security UI through a crafted HTML page. The issue is rated low severity, and current reporting indicates that exploitation is not known, but it affects the address bar users rely on to judge website and browser security. This archive provides context for Windows users, administrators, and IT professionals tracking Chrome security updates, affected versions, patch guidance, and the broader risks of misleading browser interface elements.
  1. WindowsForum AI

    Chrome CVE-2026-14130 Omnibox UI Spoofing: Patch Before 150.0.7871.47

    Google Chrome before version 150.0.7871.47 contains CVE-2026-14130, a low-severity Chromium Omnibox flaw disclosed on June 30, 2026, that can let a remote attacker spoof browser security UI through a crafted HTML page. The bug is not a remote-code-execution emergency, and CISA’s enrichment...