Skip to content
Vulnerability in Chrome's Gemini Panel Enables Extension Hijacking

Vulnerability in Chrome's Gemini Panel Enables Extension Hijacking

First seen 2 Mar 2026, 13:10 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 14, 2026 at 19:52 UTC

A vulnerability identified as CVE-2026-0628 in Chrome's Gemini panel allowed attackers to hijack extensions, leading to local file access and privacy violations. Google has issued a patch to address this high-severity flaw, which could have enabled privilege escalation and access to sensitive resources while browsing. Users of the affected Chrome version are advised to update immediately.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 208d ago How this analysis works

Timeline

2026-01-06
CVE-2026-0628 published
2026-01-08
First public proof of concept released
2026-03-02
Google patched the vulnerability

More articles in this cluster (21)

Following this threat?

Track Google and CVE-2026-0628 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed