PT-2026-46699 · Google · Chrome On Android

CVE-2026-11172

·

Published

2026-06-04

·

Updated

2026-06-10

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome on Android versions prior to 149.0.7827.53
Description Incorrect security UI in the Contact Picker allows a remote attacker to perform UI spoofing via a crafted HTML page. UI spoofing is a technique where an attacker mimics a legitimate user interface to deceive users into performing unintended actions.
Recommendations Update to version 149.0.7827.53 or later.

Fix

UI Misrepresentation of Critical Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-11172
ECHO-4E53-4F62-DABA
OPENSUSE-SU-2026:10958-1

Affected Products

Chrome On Android