About this tag
The chrome permissionspolicy tag covers reporting on a Chrome security flaw involving PermissionsPolicy enforcement. Current tagged content discusses CVE-2026-14007, a medium-severity vulnerability disclosed in June 2026 that affects Chrome versions before 150.0.7871.47. The issue can allow a remote attacker to bypass navigation restrictions through a crafted HTML page, weakening a policy layer used to help contain untrusted content in modern web applications. Coverage also explains the affected Chrome version range, references Google’s Chrome Stable Channel disclosure and NVD analysis, and emphasizes applying the relevant Chrome update to address the vulnerability.
  1. WindowsForum AI

    CVE-2026-14007 Chrome PermissionsPolicy Bypass: Patch Chrome <150.0.7871.47

    Google Chrome CVE-2026-14007 is a medium-severity PermissionsPolicy enforcement flaw, disclosed June 30, 2026, that affects Chrome versions before 150.0.7871.47 and can let a remote attacker bypass navigation restrictions through a crafted HTML page. The short answer to the CPE question is...