Description
Insufficient validation of untrusted input in Omnibox in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass navigation restrictions via malicious network traffic. (Chromium security severity: Medium)
Published: 2026-06-30
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The flaw is an input‑validation error in the Omnibox component of Google Chrome for iOS. Untrusted data coming from network traffic is not checked before being interpreted as navigation instructions. As a result, a remote attacker can send crafted content that, when a user performs a specific set of UI gestures, causes the browser to navigate to an arbitrary URL without the usual user‑initiated safeguards, potentially leading to phishing or malware delivery.

Affected Systems

Google Chrome for iOS versions earlier than 150.0.7871.47 are affected. The issue exists in all builds prior to that revision; upgrading to the latest stable release removes the vulnerability.

Risk and Exploitability

The CVSS score is 6.5, indicating medium severity. The EPSS score of less than 1 % indicates a low likelihood of exploitation in the wild at present. It is not listed in the CISA KEV catalog. Exploitation requires a remote attacker to orchestrate network traffic and persuade a user to perform a particular UI gesture sequence, which limits automated attacks but still allows socially engineered phishing attacks.

Generated by OpenCVE AI on July 17, 2026 at 14:31 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor patch for Google Chrome for iOS version 150.0.7871.47 or later, which resolves the input‑validation issue identified as CWE‑20.
  • Reduce the risk of social‑engineering attacks by educating users to avoid rapid or suspicious UI gestures that could trigger navigation to unknown pages.
  • Implement device‑management policies that enforce safe‑browsing controls or restrict automatic navigation features to help prevent unintended redirects.

Generated by OpenCVE AI on July 17, 2026 at 14:31 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Fri, 17 Jul 2026 15:00:00 +0000

Type Values Removed Values Added
Title Chrome iOS Omnibox Input Validation Bypass Allows Unauthorized Navigation

Thu, 16 Jul 2026 12:45:00 +0000

Type Values Removed Values Added
Title Unvalidated Omnibox Input Allows Remote Navigation Bypass in Chrome iOS

Tue, 14 Jul 2026 21:00:00 +0000

Type Values Removed Values Added
Title Unvalidated Omnibox Input Allows Remote Navigation Bypass in Chrome iOS

Tue, 14 Jul 2026 01:30:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Enables Unauthorized Navigation in Google Chrome for iOS

Sun, 12 Jul 2026 03:00:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Enables Unauthorized Navigation in Google Chrome for iOS

Fri, 10 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Enables Unauthorized Navigation in Chrome for iOS

Fri, 10 Jul 2026 04:30:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Enables Unauthorized Navigation in Chrome for iOS

Thu, 09 Jul 2026 03:15:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Allows Unauthorized Navigation on Chrome for iOS

Wed, 08 Jul 2026 03:45:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Allows Unauthorized Navigation on Chrome for iOS

Tue, 07 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Allowing Unauthorized Navigation

Tue, 07 Jul 2026 04:45:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Allowing Unauthorized Navigation

Mon, 06 Jul 2026 12:45:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Bypass Enables Unauthorized Navigation

Sun, 05 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Bypass Enables Unauthorized Navigation

Sun, 05 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Bypass Enables Unauthorized Navigation on iOS Chrome

Sun, 05 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Bypass Enables Unauthorized Navigation on iOS Chrome

Sat, 04 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Title Unvalidated Omnibox Input Allows Unauthorized Navigation in Chrome for iOS

Sat, 04 Jul 2026 08:00:00 +0000

Type Values Removed Values Added
Title Unvalidated Omnibox Input Allows Unauthorized Navigation in Chrome for iOS

Fri, 03 Jul 2026 20:15:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Enables Unauthorized Navigation on iOS

Fri, 03 Jul 2026 05:45:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Flaw Enables Unauthorized Navigation on iOS

Thu, 02 Jul 2026 15:00:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Error Allows Unauthorized Navigation

Thu, 02 Jul 2026 02:30:00 +0000

Type Values Removed Values Added
Title Omnibox Input Validation Error Allows Unauthorized Navigation

Wed, 01 Jul 2026 19:45:00 +0000

Type Values Removed Values Added
Title Omnibox Navigation Restriction Bypass via User Gesture on iOS Chrome

Wed, 01 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 10:45:00 +0000

Type Values Removed Values Added
Title Omnibox Navigation Restriction Bypass via User Gesture on iOS Chrome

Wed, 01 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Insufficient validation of untrusted input in Omnibox in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass navigation restrictions via malicious network traffic. (Chromium security severity: Medium)
Weaknesses CWE-20
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-01T19:03:55.100Z

Reserved: 2026-06-29T23:03:49.491Z

Link: CVE-2026-13908

cve-icon Vulnrichment

Updated: 2026-07-01T15:54:09.728Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-17T14:45:06Z

Weaknesses
  • CWE-20

    Improper Input Validation