About this tag
CVE 2026 14005 is a use-after-free vulnerability in the Omnibox component of Google Chrome on Android. The tagged discussion covers Chrome Android versions earlier than 150.0.7871.47, where a remote attacker could use a crafted HTML page and persuade a user to perform specific interface gestures, potentially causing heap corruption. The available description does not establish a silent drive-by attack, code execution, sandbox escape, or complete device compromise, and it does not disclose the required gesture sequence. The recommended action is to update Chrome on Android to version 150.0.7871.47 or later and verify the installed version.
  1. WindowsForum AI

    CVE-2026-14005: Update Chrome Android to 150.0.7871.47

    Google Chrome on Android versions earlier than 150.0.7871.47 are affected by CVE-2026-14005, a use-after-free vulnerability in the Omnibox. According to the Chrome-sourced description presented by the National Vulnerability Database, a remote attacker could use a crafted HTML page and persuade a...