CVE-2026-17998
- EPSS 0.12%
- Veröffentlicht 30.07.2026 00:26:01
- Zuletzt bearbeitet 03.08.2026 13:47:56
Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)
CVE-2026-17994
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:26:00
- Zuletzt bearbeitet 03.08.2026 13:45:01
Inappropriate implementation in Media in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17995
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:26:00
- Zuletzt bearbeitet 03.08.2026 13:48:51
Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17992
- EPSS 0.26%
- Veröffentlicht 30.07.2026 00:25:59
- Zuletzt bearbeitet 03.08.2026 13:49:18
Uninitialized Use in Skia in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
- EPSS 0.1%
- Veröffentlicht 30.07.2026 00:25:59
- Zuletzt bearbeitet 31.07.2026 04:17:14
Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Low)
CVE-2026-17989
- EPSS 0.23%
- Veröffentlicht 30.07.2026 00:25:58
- Zuletzt bearbeitet 31.07.2026 04:17:11
Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17990
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:25:58
- Zuletzt bearbeitet 03.08.2026 16:57:11
Insufficient validation of untrusted input in WebAuthn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted PDF file. (Chromium security sever...
CVE-2026-17991
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:25:58
- Zuletzt bearbeitet 03.08.2026 16:34:06
Insufficient validation of untrusted input in AI in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: ...
CVE-2026-17987
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:25:57
- Zuletzt bearbeitet 03.08.2026 16:41:20
Insufficient validation of untrusted input in Notifications in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted PDF file. (Chromium security ...
CVE-2026-17988
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:25:57
- Zuletzt bearbeitet 03.08.2026 17:03:12
Insufficient validation of untrusted input in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity...