CVE-2026-7904
- EPSS 0.03%
- Veröffentlicht 06.05.2026 18:12:27
- Zuletzt bearbeitet 06.05.2026 23:42:14
Out of bounds read in Fonts in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7900
- EPSS 0.06%
- Veröffentlicht 06.05.2026 18:12:26
- Zuletzt bearbeitet 06.05.2026 23:42:50
Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7901
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:26
- Zuletzt bearbeitet 06.05.2026 23:42:42
Use after free in ANGLE in Google Chrome on Mac prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7902
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:26
- Zuletzt bearbeitet 10.05.2026 14:16:51
Out of bounds memory access in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7898
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:25
- Zuletzt bearbeitet 06.05.2026 23:43:09
Use after free in Chromoting in Google Chrome on Linux prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)
CVE-2026-7899
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:25
- Zuletzt bearbeitet 06.05.2026 23:42:56
Out of bounds read and write in V8 in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7896
- EPSS 0.07%
- Veröffentlicht 06.05.2026 18:12:24
- Zuletzt bearbeitet 06.05.2026 23:43:25
Integer overflow in Blink in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-7897
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:24
- Zuletzt bearbeitet 06.05.2026 23:43:15
Use after free in Mobile in Google Chrome on iOS prior to 148.0.7778.96 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-7355
- EPSS 0.09%
- Veröffentlicht 28.04.2026 22:36:09
- Zuletzt bearbeitet 30.04.2026 16:38:10
Use after free in Media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-7339
- EPSS 0.06%
- Veröffentlicht 28.04.2026 22:36:08
- Zuletzt bearbeitet 30.04.2026 18:26:41
Heap buffer overflow in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)