webapp policy enforcement

  1. CVE-2026-8019 UI Spoofing: Chrome 148 WebApp Policy Flaw Explained

    Google and Microsoft disclosed CVE-2026-8019 this week as a Chromium WebApp policy-enforcement flaw fixed in Google Chrome 148.0.7778.96, allowing a remote attacker to perform user-interface spoofing through a crafted HTML page. That sounds minor beside the critical memory-safety bugs in the...