SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-17838

MEDIUM · CVSS 6.5 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

The vulnerability in Chrome for iOS allows remote attackers to exploit incorrect security UI elements to perform domain spoofing through specially crafted HTML pages. This can mislead users into believing they are interacting with legitimate websites, potentially leading to phishing attacks or data theft. Organizations using Chrome on iOS should prioritize updates to version 151.0.7922.72 or later to mitigate this risk.

CVE
CVE-2026-17838
Severity
MEDIUM
CVSS
6.5
EPSS
0.28%
Chrome

Original NVD Description

Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Medium)

Related CVEs

Other vulnerabilities affecting the same vendor(s)