Executive brief
Google Chrome for iOS is a mobile web browser used to access the internet on Apple devices. A security vulnerability in versions prior to 150.0.7871.47 could allow a malicious website to bypass the browser's security boundaries (sandbox). If exploited, this could allow an attacker to gain unauthorized access to the device's system or data beyond what a normal website should be able to reach.
Technical details
This vulnerability is classified as insufficient policy enforcement (CWE-20) within the Chrome for iOS component. The flaw allows a remote attacker to achieve a sandbox escape if they have already compromised the renderer process. By enticing a user to visit a specially crafted HTML page, the attacker can bypass security restrictions intended to isolate the browser process from the underlying operating system. The issue was addressed in version 150.0.7871.47. While the advisory lists the severity as 'High' and mentions renderer compromise as a precondition, the impact of a sandbox escape typically allows for broader system access.
Affected products
- Google Chrome for iOS prior to 150.0.7871.47
Timeline
- 2026-05-01: disclosed: Reported to Chromium by Google researchers
- 2026-06-30: patched: Fixed in version 150.0.7871.47
- 2026-06-30: advisory