UI Spoofing Vulnerability in Google Chrome for iOS
CVE-2026-95309

5.4MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-95309?

A UI misrepresentation vulnerability exists in Google Chrome on iOS, allowing remote attackers to spoof user interface elements through specially crafted HTML pages. This manipulation can potentially mislead users into interacting with deceptive content, impacting the overall security and trustworthiness of the browser experience.

Affected Version(s)

Chrome 154.0.8037.57

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.