← Back to browse · API

CVE-2026-0907

Severity
CRITICAL
CVSS
9.8
EPSS
0.07689
Risk score
41.89
CISA KEV
No
PoC
No
Published
2026-01-20
Modified
2026-01-20
First seen
2026-08-06
Aliases
CNVD-2026-11754, EUVD-2026-3441, GHSA-M5G9-928C-Q4JG
Products
Google Chrome(Linux) <144.0.7559.59, Google Chrome(Mac) <144.0.7559.60, Google Chrome(Windows) <144.0.7559.59, Google:Chrome 144.0.7559.59 <144.0.7559.59
Sources
cnvd CNVD-2026-11754
euvd EUVD-2026-3441

Description

Incorrect security UI in Split View in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

References