PT-2026-54352 · Google · Google Chrome

·

CVE-2026-14077

·

Published

2026-06-30

·

Updated

2026-09-10

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome on Mac versions prior to 150.0.7871.47
Description An inappropriate implementation in the Select element allows a remote attacker to spoof the contents of the Omnibox (URL bar) using a crafted HTML page. This occurs when a tall <select> element is positioned partly above the viewport, causing the browser to paint over the Omnibox.
Recommendations Update Google Chrome on Mac to version 150.0.7871.47 or later.

Fix

UI Misrepresentation of Critical Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-14077
ECHO-9281-447D-9C54
OPENSUSE-SU-2026:11184-1
OPENSUSE-SU-2026:21279-1
OPENSUSE-SU-2026:21498-1

Affected Products

Google Chrome