Security Alerts
The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.
Google Patches Chrome Password Manager Vulnerability That Could Expose Cross-Origin Data
Google has released an urgent update for Chrome on Windows and Mac, patching a vulnerability in the browser’s built-in password manager that could allow a remote attacker to siphon sensitive data...
Google Patches WebXR UI Spoofing in Chrome—Windows Users Urged to Update
Google on Monday shipped a fix for a medium-severity vulnerability in Chrome’s WebXR implementation, warning that a crafted webpage could spoof browser interface elements and trick Windows users...
CVE-2026-14022: Cross-Origin Data Leak Fixed in Chrome 150 – Here's Why You Should Update
Google released a fix for a medium-severity vulnerability in Chrome's networking component on June 30, 2026, closing a loophole that could let attackers steal data from other websites after...
Chrome 150 Fixes Use-After-Free Flaw in Linux Display Layer
Google disclosed a medium-severity use-after-free vulnerability in Chrome’s Linux-specific Ozone layer on June 30, 2026. The flaw, tracked as CVE-2026-14024, is patched in Chrome 150 and affects...
Chrome Emergency Update Closes SplitView UI Spoofing Flaw That Fooled Security Interfaces
Google released an emergency update for Chrome on June 30, 2026, patching a high-severity vulnerability that allowed attackers to spoof the browser’s security interfaces. The flaw, tracked as...
Google Pushes Chrome 150.0.7871.47 to Fix GPU Sandbox Escape—Here’s What to Do
Google rushed out a critical patch for its Chrome browser on June 30, 2026, addressing a vulnerability that attackers could use to break free from the browser’s built-in security sandbox. The flaw,...
Chrome 150 Update Closes New Tab Page Loophole That Aided Sandbox Escapes
Google shipped a targeted fix on June 30, 2026, for a low-severity input-validation flaw in Chrome’s New Tab Page that could be weaponized to weaken the browser’s sandbox defenses. The patch,...
Chrome 150.0.7871.47 Plugs Use-After-Free Hole: Why Even 'Low' Severity Bugs Need Immediate Patching
Google released Chrome 150.0.7871.47 to the Stable Channel for desktop on June 30, 2026, closing a use-after-free vulnerability tracked as CVE-2026-14040. The flaw resides in BrowserTag, a component...
Chrome 150 Patches Web Serial Security Gap—Windows Admins, Here’s Your Action Plan
On June 30, 2026, Google released a stable-channel update for its Chrome browser, bumping the version to 150.0.7871.47 on Windows, Mac, and Linux. The update addresses a single security issue,...
Chrome 150.0.7871.47 Patches Low-Risk Gamepad Data Leak—Here’s What to Do
On June 30, 2026, the National Vulnerability Database published details of a new Chromium flaw that lets malicious websites quietly read memory contents through the Gamepad API. Tracked as...
Chrome Security Update Closes FileSystem Bypass That Could Expose User Files
Google has released Chrome 150.0.7871.47 for Windows and Mac, patching a low-severity vulnerability that could have allowed a remote attacker to circumvent file system security restrictions. The...
Chrome 150 Plugs Windows Sandbox Escape: The Real Risk Behind That ‘Low’ Severity Tag
On June 30, 2026, Google rolled out Chrome 150.0.7871.47 for Windows, stomping out a sandbox escape vulnerability that exposes a harsh reality of browser security: even flaws tagged “Low”...