Executive brief
Google Chrome on iOS is a web browser used by millions of users to access internet content on Apple mobile devices. A local attacker with access to a device could exploit a flaw to read sensitive information from the browser by opening a specially crafted file, potentially exposing cached data or other confidential content.
Technical details
This is an information disclosure vulnerability in the Mobile component of Google Chrome on iOS. The vulnerability exists in versions prior to 152.0.7977.65 and is triggered via a crafted file that a local attacker can introduce or manipulate on the device. The attack requires local access to the device and involves the attacker providing a malicious file to the target. The vulnerability allows the attacker to obtain sensitive information that should remain confidential. The fix is available in Chrome version 152.0.7977.65 and later for iOS.
Affected products
- Google Chrome prior to 152.0.7977.65 on iOS
Timeline
- 2026-08-25: disclosed
- 2026-08-25: patched