Google Chrome for iOS Same Origin Policy Bypass Vulnerability

Vulnerability

A vulnerability in Google Chrome on iOS, prior to version 148.0.7778.216, allowed remote attackers to bypass the same origin policy. This was achieved through insufficient validation of untrusted input in the renderer process, via a crafted HTML page.

Impact

Exploitation of this vulnerability could lead to a same origin policy bypass, allowing for potentially malicious interactions between different origins.

Remediation

Users can update to Google Chrome version 148.0.7778.216 or later to address this vulnerability.

Added: May 28, 2026, 11:53 PM
Updated: May 28, 2026, 11:53 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
1.3
exploitability
3.3
remediation
7.7
relevance
9.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.