PT-2026-24875 · Google+1 · Google Chrome+1
Qymag1C
·
Published
2026-01-11
·
Updated
2026-05-15
·
CVE-2026-3927
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 146.0.7680.71
Description
An incorrect security user interface in the PictureInPicture feature allowed a remote attacker to perform UI spoofing through a crafted HTML page. The security severity is rated as Medium by Chromium.
Recommendations
Update Google Chrome to version 146.0.7680.71 or later.
Fix
UI Misrepresentation of Critical Information
Clickjacking
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Google Chrome
Red Os