CVE-2026-7348
- EPSS 0.03%
- Veröffentlicht 28.04.2026 22:36:01
- Zuletzt bearbeitet 30.04.2026 18:27:23
Use after free in Codecs in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7349
- EPSS 0%
- Veröffentlicht 28.04.2026 22:36:00
- Zuletzt bearbeitet 30.04.2026 16:40:46
Use after free in Cast in Google Chrome prior to 147.0.7727.138 allowed an attacker on the local network segment to execute arbitrary code inside a sandbox via malicious network traffic. (Chromium security severity: High)
CVE-2026-7350
- EPSS 0.02%
- Veröffentlicht 28.04.2026 22:36:00
- Zuletzt bearbeitet 30.04.2026 16:40:36
Use after free in WebMIDI in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7351
- EPSS 0.01%
- Veröffentlicht 28.04.2026 22:35:59
- Zuletzt bearbeitet 30.04.2026 16:40:22
Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: High)
CVE-2026-7352
- EPSS 0.02%
- Veröffentlicht 28.04.2026 22:35:59
- Zuletzt bearbeitet 30.04.2026 16:40:08
Use after free in Media in Google Chrome on Android prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7353
- EPSS 0.02%
- Veröffentlicht 28.04.2026 22:35:58
- Zuletzt bearbeitet 30.04.2026 16:39:59
Heap buffer overflow in Skia in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7354
- EPSS 0.03%
- Veröffentlicht 28.04.2026 22:35:58
- Zuletzt bearbeitet 30.04.2026 16:38:18
Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7356
- EPSS 0.09%
- Veröffentlicht 28.04.2026 22:35:57
- Zuletzt bearbeitet 30.04.2026 16:38:03
Use after free in Navigation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7357
- EPSS 0.02%
- Veröffentlicht 28.04.2026 22:35:57
- Zuletzt bearbeitet 30.04.2026 16:37:58
Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7334
- EPSS 0.03%
- Veröffentlicht 28.04.2026 22:35:56
- Zuletzt bearbeitet 30.04.2026 18:29:37
Use after free in Views in Google Chrome on Mac prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)