Technology · Google
Google Chrome for iOS vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 79 vulnerabilities in Google Chrome for iOS: 0 in the last 7 days and 57 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-18016, was published on 30 July 2026.
- Last 7 days
- 0
- Last 90 days
- 57
- Critical, all time
- 0
- Exploited in the wild
- 0
About Google Chrome for iOS
The iOS version of the Google Chrome web browser.
Latest Google Chrome for iOS vulnerabilities
- CVE-2026-18016: Google Chrome for iOS UI spoofing via insufficient policy enforcementinfoCVSS 0
- CVE-2026-18013: Google Chrome for iOS UI spoofing via crafted HTML pageinfo
- CVE-2026-18011: Google Chrome for iOS information disclosure in process memoryinfo
- CVE-2026-18003: Google Chrome for iOS UI spoofing via crafted HTML pageinfo
- CVE-2026-17972: Google Chrome for iOS UI spoofing via crafted HTML pageinfoCVSS 0
- CVE-2026-17967: Google Chrome for iOS use after free heap corruptioninfoCVSS 0
- CVE-2026-17965: Google Chrome for iOS UI spoofing via crafted HTML pageinfoCVSS 0
- CVE-2026-17960: Google Chrome for iOS no-referrer policy bypassinfoCVSS 0
- CVE-2026-17944: Google Chrome for iOS navigation restriction bypassinfo
- CVE-2026-17941: Google Chrome for iOS Omnibox spoofing via crafted HTML pageinfoCVSS 0
- CVE-2026-17917: Google Chrome for iOS discretionary access control bypassinfoCVSS 0
- CVE-2026-17913: Google Chrome for iOS UI spoofing via crafted HTML pageinfo
- CVE-2026-17912: Google Chrome for iOS navigation restriction bypassinfoCVSS 3.3
- CVE-2026-17874: Google Chrome for iOS UI spoofing via crafted HTML pageinfoCVSS 0
- CVE-2026-17873: Google Chrome for iOS discretionary access control bypassinfoCVSS 4.3
- CVE-2026-17849: Google Chrome for iOS URL spoofing in OmniboxinfoCVSS 4.3
- CVE-2026-17839: Google Chrome for iOS UI spoofing via crafted HTML pageinfo
- CVE-2026-17838: Google Chrome for iOS domain spoofing in security UIinfoCVSS 4.3
- CVE-2026-17835: Google Chrome for iOS UI spoofing via crafted HTML pageinfoCVSS 4.3
- CVE-2026-17830: Google Chrome for iOS navigation restriction bypassinfoCVSS 4.3
- CVE-2026-17828: Google Chrome for iOS UI spoofing via crafted HTMLinfoCVSS 0
- CVE-2026-17826: Google Chrome for iOS cross-origin data leak via UI gesturesinfoCVSS 4.3
- CVE-2026-17822: Google Chrome for iOS race condition UI spoofinginfoCVSS 0
- CVE-2026-17814: Google Chrome for iOS navigation restriction bypassinfoCVSS 0
- CVE-2026-17813: Google Chrome for iOS navigation restriction bypassinfoCVSS 0
Most severe Google Chrome for iOS vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-8585: Google Chrome for iOS out of bounds read in MediahighCVSS 7.5EPSS 0.1%
- CVE-2026-10896: Google Chrome for iOS use after free remote code executioninfoCVSS 9.8
- CVE-2026-10885: Google Chrome for iOS use after free remote code executioninfoCVSS 9.8
- CVE-2026-17684: Google Chrome for iOS sandbox escape via improper input validationinfoCVSS 8.8
- CVE-2026-13813: Google Chrome for iOS sandbox escape in renderer processinfoCVSS 8.8
- CVE-2026-10958: Google Chrome for iOS use after free in UI gesturesinfoCVSS 8.8
- CVE-2026-10952: Google Chrome for iOS use after freeinfoCVSS 8.8
- CVE-2026-10951: Google Chrome for iOS use after free in AutofillinfoCVSS 8.8
- CVE-2026-10915: Google Chrome for iOS use after free in CoreinfoCVSS 8.8
- CVE-2026-9956: Google Chrome for iOS use after free in UI gesturesinfoCVSS 8.8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 24 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 33 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/chrome-for-ios.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Google Chrome for iOS vulnerabilities", https://junglewise.ai/threats/technologies/chrome-for-ios, 26 September 2026.