A high-severity vulnerability (CVE-2026-0628) in Chrome's Gemini 'Live in Chrome' side panel allowed a low-privilege browser extension to inject JavaScript into the privileged AI panel and inherit its capabilities, including camera/microphone access, local file enumeration, screenshots, and the ability to turn the panel into a phishing UI. The flaw exploited the declarativeNetRequest API to tamper with traffic to gemini.google.com when loaded in the side panel. Google patched the issue in a January 2026 update. The broader concern is that agentic AI browsers (Gemini in Chrome, Copilot in Edge, etc.) require broad permissions that make them attractive attack targets, breaking traditional browser isolation boundaries.

3m read timeFrom securityboulevard.com
Post cover image
1 Impression