Jan 7, 2026•4 min read
Chrome Patches High-Severity WebView Policy Bypass
CVE-2026-0628 allowed malicious extensions to inject scripts into privileged pages through insufficient policy enforcement. Update to Chrome 143.0.7499.192.
Marcus Chen2 articles tagged with "Webview"
CVE-2026-0628 allowed malicious extensions to inject scripts into privileged pages through insufficient policy enforcement. Update to Chrome 143.0.7499.192.
Marcus ChenGoogle patches CVE-2026-0628 in first 2026 update. The high-severity bug affects billions of users across Chrome and Android applications.