Google Chrome IFrameSandbox Policy Bypass Vulnerability

Vulnerability

A policy bypass vulnerability has been identified in the IFrameSandbox component of Google Chrome, affecting versions prior to 147.0.7727.55. This vulnerability allows remote attackers to bypass navigation restrictions by convincing users to perform specific UI gestures on a crafted HTML page.

Impact

Exploitation of this vulnerability could lead to unauthorized navigation or interaction with content that is normally restricted by the IFrameSandbox policy.

Remediation

Users can update to Google Chrome version 147.0.7727.55 or later to address this vulnerability.

Added: Apr 8, 2026, 11:27 PM
Updated: Apr 8, 2026, 11:27 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
0.6
exploitability
4.2
remediation
7.7
relevance
5.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.