Junglewise Threat Intelligence

CVE-2026-17830: Google Chrome for iOS navigation restriction bypass

CVE-2026-17830 · Severity: info · CVSS 4.3 · Published 2026-07-30

Technologies: Google Chrome for iOS. Vendors: Google.

Executive brief

A security issue has been identified in Google Chrome for iOS, the mobile web browser used on iPhones and iPads. A remote attacker could use a specially crafted website to bypass security restrictions that normally control how the browser navigates between pages. While this is considered a medium-severity issue, it could potentially be used to trick users or interfere with the intended security boundaries of a website.

Technical details

An inappropriate implementation vulnerability exists in Google Chrome for iOS prior to version 151.0.7922.72. The flaw resides in the navigation component, where insufficient validation allows a remote attacker to bypass intended navigation restrictions. By enticing a user to visit a specially crafted HTML page, an attacker can trigger unauthorized navigation actions. This issue is categorized by Chromium as Medium severity. Users are advised to update to version 151.0.7922.72 or later to mitigate this risk.

Affected products

  • Google Chrome for iOS prior to 151.0.7922.72

Timeline

  • 2026-07-29: patched: Fixed in version 151.0.7922.72
  • 2026-07-30: disclosed

References

Related threats