Impact
The vulnerability in Chrome on iOS occurs when the Web Authentication policy is not properly enforced in versions prior to 150.0.7871.47. An attacker who can provide a malicious HTML page from a privileged network can trick a user to visit it, and the lack of policy checks allows that page to read data that should be protected by the Web Authentication API. This results in confidential cross‑origin data being disclosed, but does not permit code execution or privilege escalation. The flaw aligns with CWE‑693, indicating improper verification of policy enforcement and potential information exposure.
Affected Systems
Only iOS installations of Google Chrome built before version 150.0.7871.47 are reported to be vulnerable; the status of other platforms or operating systems has not been confirmed.
Risk and Exploitability
Exploitation requires the attacker to control a privileged network segment from which to serve the crafted page, and the user must visit that page. The EPSS of <1% indicates a low likelihood of exploitation in the wild, and the vulnerability is not listed in CISA’s KEV catalog. The CVSS score of 6.5 denotes medium severity. Attackers cannot gain code execution or elevate privileges; their objective is solely to obtain cross‑origin data exposed by the Web Authentication API.
OpenCVE Enrichment
Debian DLA
Debian DSA