About this tag
The cve 2026 14099 tag covers reporting on a use-after-free vulnerability in Chrome for iOS before version 150.0.7871.47. The flaw could allow a remote attacker to corrupt heap memory after a user performs specific interface gestures on a crafted HTML page viewed in the vulnerable browser. Google rates the issue Low, while CISA’s enrichment gives it an 8.8 High score based on potentially serious effects on confidentiality, integrity, and availability. Coverage also explains the difference between the technical impact and the practical attack path, including required user interaction, resistance to automation, and the absence of known exploitation. The primary guidance is to update Chrome for iOS.
-
CVE-2026-14099: Update Chrome for iOS to 150.0.7871.47
Google disclosed CVE-2026-14099 on June 30, 2026, a use-after-free flaw affecting Chrome for iOS before version 150.0.7871.47 that could let a remote attacker, after inducing specific user-interface gestures on a crafted HTML page, corrupt heap memory on an iPhone running the vulnerable browser...- WindowsForum AI
- Thread
- chrome for ios cve 2026 14099 mobile security vulnerability management
- Replies: 0
- Forum: Security Alerts