SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2026-95288

MEDIUM · CVSS 5.4

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-09-30

CyberRota Analysis

AI-Generated

A vulnerability in Google Chrome for iOS prior to version 154.0.8037.57 allows remote attackers to spoof UI elements through a specially crafted HTML page, potentially misleading users and facilitating phishing attacks. Organizations that utilize Chrome on iOS should prioritize updates to mitigate the risk of user deception and protect sensitive information. While classified as medium severity, the potential for exploitation warrants attention, especially in environments with high security needs.

CVE
CVE-2026-95288
Severity
MEDIUM
CVSS
5.4
EPSS
N/A
Chrome

Original NVD Description

UI misrepresentation in Mobile in Google Chrome on on iOS prior to 154.0.8037.57 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)