Spoofing attack in Google Chromium - CVE-2026-87653
Published: September 9, 2026
Vulnerability details
The vulnerability allows a remote attacker to misrepresent browser user interface elements.
The vulnerability exists due to user interface misrepresentation in the FullScreen feature when displaying crafted web content in fullscreen mode. A remote attacker can trick a victim into viewing crafted web content to misrepresent browser user interface elements.
User interaction is required.
Affected software
Google Chrome
How to mitigate CVE-2026-87653
Google Chrome - update to 153.0.8010.36