CVE-2026-17985
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:25:55
- Zuletzt bearbeitet 03.08.2026 16:39:19
Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17986
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:25:55
- Zuletzt bearbeitet 03.08.2026 17:03:53
Insufficient policy enforcement in Bluetooth in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17983
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:25:54
- Zuletzt bearbeitet 03.08.2026 16:38:42
Inappropriate implementation in Global Media Controls in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17984
- EPSS 0.09%
- Veröffentlicht 30.07.2026 00:25:54
- Zuletzt bearbeitet 03.08.2026 13:44:58
Inappropriate implementation in Browser in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17980
- EPSS 0.17%
- Veröffentlicht 30.07.2026 00:25:53
- Zuletzt bearbeitet 03.08.2026 13:44:53
Inappropriate implementation in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low...
CVE-2026-17981
- EPSS 0.16%
- Veröffentlicht 30.07.2026 00:25:53
- Zuletzt bearbeitet 03.08.2026 16:23:06
Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17982
- EPSS 0.19%
- Veröffentlicht 30.07.2026 00:25:53
- Zuletzt bearbeitet 03.08.2026 16:37:12
Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17978
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:25:52
- Zuletzt bearbeitet 03.08.2026 17:07:56
Side-channel information leakage in WebCodecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17979
- EPSS 0.17%
- Veröffentlicht 30.07.2026 00:25:52
- Zuletzt bearbeitet 31.07.2026 04:17:08
Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-17975
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:25:51
- Zuletzt bearbeitet 03.08.2026 17:17:13
Inappropriate implementation in IME in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)