Spoofing Vulnerability in Google Chrome on Android
CVE-2026-5906

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 April 2026

What is CVE-2026-5906?

A spoofing vulnerability in the Omnibox (URL bar) of Google Chrome on Android devices allows attackers to manipulate the displayed content through a specially crafted HTML page. This flaw could lead to users being misled about their current web address, exposing them to potential phishing attacks and security risks. It is crucial for users to update their browser to the latest version to mitigate risks associated with this vulnerability.

Affected Version(s)

Chrome 147.0.7727.55

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.