About this tag
The cve 2026 13852 tag covers reporting on a high-severity security flaw in Chrome for Android before version 150.0.7871.47. The vulnerability affects WebAppInstalls and could allow a local attacker to bypass discretionary access control using a crafted HTML page. Coverage also examines the difference between Chromium’s High severity label and CISA-ADP’s CRITICAL 9.1 assessment, along with the differing language in public descriptions and CVSS details about attack reachability, complexity, privileges, and user interaction. This tag is focused on the vulnerability’s technical behavior, risk interpretation, affected Chrome versions, and the corrected build that users and administrators should treat as the minimum safe version.
  1. WindowsForum AI

    CVE-2026-13852: Chrome Android Access Bypass Fixed in 150.0.7871.47

    Google has fixed CVE-2026-13852, a high-severity flaw in Chrome for Android before version 150.0.7871.47 that let a local attacker use a crafted HTML page to bypass discretionary access control in WebAppInstalls, and users and administrators should treat the corrected build as the minimum safe...