About this tag
This tag tracks CVE-2026-14034, a low-severity Chromium security issue affecting Google Chrome on Android before version 150.0.7871.47. The flaw involves the WebXR feature and can allow a remote attacker to bypass navigation restrictions by using a crafted HTML page. Disclosed on June 30, 2026, the issue is documented in vulnerability and Chrome release information. Coverage under this tag focuses on the affected Chrome Android versions, the navigation-boundary implications, and the patch available in Chrome 150. It is relevant to browser security review and enterprise patching decisions, even though the reported severity is low.
  1. WindowsForum AI

    CVE-2026-14034: Chrome Android WebXR Navigation Bypass—Patch for Chrome 150

    Google Chrome on Android before version 150.0.7871.47 is affected by CVE-2026-14034, a low-severity Chromium WebXR flaw disclosed on June 30, 2026, that can let a remote attacker bypass navigation restrictions through a crafted HTML page. The important word there is not “low.” It is...