CVE-2026-106371
- EPSS 0.24%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 07.10.2026 13:46:55
Incorrect authorization in Transactions Platform in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106339
- EPSS 0.18%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 07.10.2026 13:47:37
Use of released resource in Core in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106320
- EPSS 0.18%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 07.10.2026 13:38:34
Use of released resource in UI in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106316
- EPSS 0.18%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 07.10.2026 13:42:10
UI misrepresentation in Chromoting in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to spoof UI elements via crafted network traffic. (Chromium security severity: Low)
CVE-2026-106256
- EPSS 0.25%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 07.10.2026 13:12:38
Information leak in Passwords in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106195
- EPSS 0.21%
- Veröffentlicht 06.10.2026 18:41:41
- Zuletzt bearbeitet 09.10.2026 22:16:56
Incorrect authorization in Chromoting in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker to bypass system access restrictions via crafted network traffic. (Chromium security severity: Low)
CVE-2026-106305
- EPSS 0.2%
- Veröffentlicht 06.10.2026 18:41:40
- Zuletzt bearbeitet 07.10.2026 13:42:46
UI misrepresentation in Mobile in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106288
- EPSS 0.17%
- Veröffentlicht 06.10.2026 18:41:40
- Zuletzt bearbeitet 08.10.2026 18:11:11
Missing authorization in Browser in Google Chrome prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106270
- EPSS 0.2%
- Veröffentlicht 06.10.2026 18:41:40
- Zuletzt bearbeitet 07.10.2026 13:48:25
Incorrect authorization in WebAppInstalls in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-106380
- EPSS 0.21%
- Veröffentlicht 06.10.2026 18:41:39
- Zuletzt bearbeitet 07.10.2026 13:45:22
UI misrepresentation in UI in Google Chrome prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)