Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
The product displays information or identifiers to a user, but the display mechanism does not make it easy for the user to distinguish between visually similar or identical glyphs (homoglyphs), which may cause the user to misinterpret a glyph and perform an unintended, insecure action.
Link | Tags |
---|---|
https://chromereleases.googleblog.com/2025/02/stable-channel-update-for-desktop_12.html | release notes |
https://issues.chromium.org/issues/391788835 | issue tracking permissions required |