Page 1 of 1

CVE-2026-14156 - Google Chrome StorageAccessAPI Same Origin Policy Bypass

Posted: Wed Jul 01, 2026 2:21 am
by Starburst-David
CVE ID: CVE-2026-14156
Published: June 30, 2026
Description: Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA

More Information:
https://cvefeed.io/vuln/detail/CVE-2026-14156