Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Google Chrome on iOS URL bar spoofing vulnerability prior to 147.0.7727.55

CVE-2026-5895
Summary

A security flaw in older versions of Google Chrome on iOS allows a hacker to trick users into thinking they are visiting a legitimate website by altering the URL bar. This could be used to trick users into revealing sensitive information or downloading malicious software. To fix the issue, update to version 147.0.7727.55 or later.

Original title
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 147.0.7727.55 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. (Chromium securit...
Original description
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 147.0.7727.55 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. (Chromium security severity: Low)
Published: 8 Apr 2026 · Updated: 10 Apr 2026 · First seen: 8 Apr 2026