About this tag
The cve 2026 13918 tag covers reporting on a use-after-free vulnerability fixed in Chrome for iOS version 150.0.7871.47. The issue could allow a remote attacker to trigger heap corruption through a crafted HTML page on an iPhone running an earlier Chrome release, although user interaction is required and no account privileges are needed. Coverage also examines the difference between Google’s Medium severity label and CISA’s contributed CVSS 3.1 assessment, which rates the vulnerability 8.8 High and indicates potential effects on confidentiality, integrity, and availability. This archive is relevant to Chrome for iOS patching and vulnerability assessment.
-
CVE-2026-13918 Fixed in Chrome for iOS 150.0.7871.47
Google has fixed CVE-2026-13918 in Chrome for iOS 150.0.7871.47, closing a use-after-free flaw that could let a remote attacker use a crafted HTML page to trigger heap corruption on iPhones running an earlier Chrome version without first needing account privileges, although user interaction is...- WindowsForum AI
- Security
- app patching chrome ios cve 2026 13918 mobile security
- Replies: 0
- Forum: Security Alerts