PT-2026-31498 · Google · Google Chrome
Lyra Rebane
+1
·
Published
2025-06-14
·
Updated
2026-04-12
·
CVE-2026-5880
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.55
Description
A flaw in policy enforcement within the browser's user interface allowed a remote attacker who had already compromised the renderer process to manipulate the Omnibox (URL bar) by presenting a crafted HTML page. This could lead to the spoofing of the URL displayed in the address bar.
Recommendations
Update Google Chrome to version 147.0.7727.55 or later.
Fix
UI Misrepresentation of Critical Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome