Security Alerts
The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.
Google Ships Urgent Chrome Fix for StorageAccessAPI Bypass (CVE-2026-14156) — Windows Users Must Update Now
Google has rushed out a security patch for a high-severity vulnerability in Chrome’s StorageAccessAPI that could let a remote attacker read sensitive data from any website you’re logged into. The...
Chrome 150 Closes DevTools Hole That Leaked Windows Memory
Google shipped an urgent fix for a flaw in Chrome’s developer tools that could hand a remote attacker snippets of your browser’s memory. The vulnerability, cataloged as CVE-2026-13961, was closed...
Google patches Chrome 150 CVE-2026-13973 UI spoofing bug in June 30 update
Google pushed out Chrome 150.0.7871.47 for Windows and Mac on June 30, 2026, addressing a medium-severity UI spoofing vulnerability tracked as CVE-2026-13973. The bug could allow a malicious web page...
Chrome 150.0.7871.47 Update Fixes PageInfo Spoofing Bug That Could Mislead You About Website Security
On June 30, 2026, Google shipped an urgent stable channel update for Chrome, version 150.0.7871.47, to close a medium-severity vulnerability that could let attackers spoof the browser’s PageInfo...
Chrome’s Latest Zero-Day Fix: Why You Need to Update Beyond 150.0.7871.47 Now
Google has shipped an emergency security update to Chrome’s stable channel, fixing a dangerous use-after-free vulnerability in the browser’s navigation system. The patch, tagged CVE-2026-14006,...
Google Ships Chrome Update to Fix SVG Flaw That Can Leak Your Data Across Websites
Google has released a security update for Chrome 150 on Windows and macOS that closes a hole in how the browser enforced same-origin policies for SVG files. The flaw, tracked as CVE-2026-14016, could...
Urgent Chrome Update: CVE-2026-14027 Patches Use-After-Free Flaw in Sign-In Component
A serious vulnerability in Google Chrome’s Sign-In feature was assigned CVE-2026-14027 and published by the National Vulnerability Database (NVD) on June 30, 2026. The use-after-free bug affects...
Chrome 150 Update Closes Loophole That Could Allow Unauthorized Webcam Access
{ "title": "Chrome 150 Update Closes Loophole That Could Allow Unauthorized Webcam Access", "content": "Google released a stable channel update for Chrome on June 30 that patches a low-severity...
Chrome 150 Emergency Patch Closes Hole That Leaked Your Data Across Websites
Google shipped Chrome 150 on June 29, plugging a critical security hole that let attackers steal information from websites you’re logged into—simply by luring you to a malicious page. The...
Patch Now: Chrome 150 Fixes High-Severity WebAudio Leak Exposing Cross-Origin Data
Google shipped Chrome 150.0.7871.47 to the stable channel in late June 2026, closing a high-severity information leak in its WebAudio implementation. Tracked as CVE-2026-14071, the flaw could enable...
Google Chrome 150.0.7871.47 Fixes Storage Race That Leaked Private Data Between Websites
Google pushed a Stable Channel update for Chrome on June 30, 2026, closing a storage race condition that could silently siphon sensitive cross-origin data from unsuspecting users. The vulnerability,...
Chrome’s ‘Low-Severity’ CVE-2026-14092 Privacy Bug Is Actually a Cross-Origin Data Leak—Update to 150.0.7871.47
Google released Chrome 150.0.7871.47 on June 30, 2026, to fix what it labeled a low-severity privacy flaw. But the National Vulnerability Database (NVD) and the U.S. Cybersecurity and Infrastructure...