Executive brief
Google Chrome for iOS is a popular mobile web browser. A security flaw in versions prior to 151.0.7922.72 could allow a malicious website to bypass built-in navigation restrictions. This could potentially lead to users being redirected to unintended or harmful sites without their consent, impacting the security of their browsing session.
Technical details
An insufficient policy enforcement vulnerability exists in the navigation component of Google Chrome for iOS. The flaw allows a remote attacker to bypass intended navigation restrictions by enticing a user to visit a specially crafted HTML page. This is classified as a navigation bypass, which can be used to circumvent security boundaries enforced by the browser. The issue is resolved in version 151.0.7922.72.
Affected products
- Google Chrome for iOS prior to 151.0.7922.72
Timeline
- 2026-07-30: advisory
- 2026-07-29: patched