PT-2026-31509 · Google · Google Chrome
Tianyi Hu
·
Published
2026-02-25
·
Updated
2026-04-12
·
CVE-2026-5891
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.55
Description
A flaw in policy enforcement within the browser's user interface in Google Chrome, specifically before version 147.0.7727.55, could allow a remote attacker who has already compromised the renderer process to perform UI spoofing. This is achieved through a specially crafted HTML page. The security severity is rated as Medium.
Recommendations
Update Google Chrome to version 147.0.7727.55 or later.
Fix
UI Misrepresentation of Critical Information
Clickjacking
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Google Chrome