Cross-Origin Data Leak in Google Chrome Navigation Implementation
CVE-2026-5918

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 April 2026

What is CVE-2026-5918?

A security flaw in the navigation component of Google Chrome allows an attacker who has compromised the renderer process to leak sensitive cross-origin data. This vulnerability exploits a weakness in the browser's handling of certain crafted HTML pages, potentially allowing unauthorized access to data across different origins. Users of Google Chrome versions prior to 147.0.7727.55 are urged to update their browsers to mitigate this risk.

Affected Version(s)

Chrome 147.0.7727.55

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.