UI Misrepresentation Vulnerability in Google Chrome for iOS
CVE-2026-95288

5.4MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-95288?

A UI misrepresentation vulnerability exists in Google Chrome on iOS, which allows remote attackers to spoof user interface elements through crafted HTML pages. This flaw can lead to user deception, enabling attackers to create misleading interfaces that could trick users into performing unintended actions or divulging sensitive information. It is essential for users to update their browsers to the latest version to mitigate this risk.

Affected Version(s)

Chrome 154.0.8037.57

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.