Junglewise Threat Intelligence

CVE-2026-18011: Google Chrome for iOS information disclosure in process memory

CVE-2026-18011 · Severity: info · Published 2026-07-30

Technologies: Google Chrome, Google Chrome for iOS. Vendors: Google.

Executive brief

Google Chrome for iOS is a mobile web browser used to access the internet on Apple devices. A security flaw in this application could allow an individual with physical access to a user's device to extract sensitive information from the browser's active memory. This could potentially lead to the exposure of private data handled during a browsing session.

Technical details

An information disclosure vulnerability exists in Google Chrome for iOS due to an inappropriate implementation within the application's process handling. The vulnerability allows a local attacker who has physical access to an unlocked device to read sensitive information directly from the application's process memory. This is classified by Chromium as a low-severity issue because it requires physical proximity and access to the hardware. The issue was addressed in version 151.0.7922.72.

Affected products

  • Google Chrome for iOS prior to 151.0.7922.72

Timeline

  • 2026-07-29: patched: Fixed in version 151.0.7922.72
  • 2026-07-30: disclosed

References

Related threats