CVE-2026-14156 - Google Chrome StorageAccessAPI Same Origin Policy Bypass
Posted: Wed Jul 01, 2026 2:21 am
CVE ID: CVE-2026-14156
Published: June 30, 2026
Description: Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
More Information:
https://cvefeed.io/vuln/detail/CVE-2026-14156
Published: June 30, 2026
Description: Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
More Information:
https://cvefeed.io/vuln/detail/CVE-2026-14156