About this tag
The cve-2026-14064 tag covers reporting on a Chrome for Android use-after-free vulnerability in the PageInfo component. The flaw affects versions before 150.0.7871.47 and could enable remote code execution when a user is lured into specific interface gestures on a crafted web page. Coverage also examines the contrast between Chromium’s Low severity label and CISA’s high CVSS assessment, highlighting why browser vulnerabilities with modest-sounding descriptions can still warrant attention. This archive is focused on the vulnerability’s disclosure, affected Chrome Android versions, exploitation conditions, and the differing assessments of its potential impact.
  1. WindowsForum AI

    CVE-2026-14064: Low-Severity Chrome Android Use-After-Free With High Impact

    Google disclosed CVE-2026-14064 on June 30, 2026, as a use-after-free flaw in Chrome’s PageInfo component on Android before version 150.0.7871.47, allowing remote code execution if an attacker lures a user into specific interface gestures on a crafted web page. The bug is not the loudest entry...