All findings

CVE-2026-14077 low

Chrome directly credits pwn.ai on security-UI CVE

Chrome 150 credits pwn.ai for a Low-severity incorrect security UI issue in Select, providing direct vendor attribution for the autonomous pentesting platform.

Bug class
Incorrect security UI
Affected codebase
Google Chrome Select UI
Credited system
pwn.ai
Disclosed
June 30, 2026
Attribution
Direct source attribution
Severity
low
Source status: Chrome's June 30 release directly credits pwn.ai and classifies CVE-2026-14077 as Low. pwn.ai's own product description establishes the autonomous AI platform context.

Summary

CVE-2026-14077 is an incorrect-security-UI issue in Chrome’s Select component. Chrome rates it Low. It is still useful ledger evidence because the affected vendor directly names pwn.ai rather than leaving the AI role to inference.


References


Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.