CVE-2026-17871
- EPSS 0.17%
- Veröffentlicht 30.07.2026 00:19:44
- Zuletzt bearbeitet 03.08.2026 17:43:01
Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17872
- EPSS 0.07%
- Veröffentlicht 30.07.2026 00:19:44
- Zuletzt bearbeitet 03.08.2026 13:46:37
Cryptographic Flaw in WebAppInstalls in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17866
- EPSS 0.17%
- Veröffentlicht 30.07.2026 00:19:43
- Zuletzt bearbeitet 03.08.2026 13:46:34
Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17867
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:19:43
- Zuletzt bearbeitet 03.08.2026 17:43:31
Insufficient validation of untrusted input in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17868
- EPSS 0.33%
- Veröffentlicht 30.07.2026 00:19:43
- Zuletzt bearbeitet 03.08.2026 17:43:23
Insufficient policy enforcement in USB in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17869
- EPSS 0.26%
- Veröffentlicht 30.07.2026 00:19:43
- Zuletzt bearbeitet 03.08.2026 17:43:17
Out of bounds read in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17862
- EPSS 0.11%
- Veröffentlicht 30.07.2026 00:19:42
- Zuletzt bearbeitet 03.08.2026 17:38:43
Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Medium)
CVE-2026-17863
- EPSS 0.11%
- Veröffentlicht 30.07.2026 00:19:42
- Zuletzt bearbeitet 03.08.2026 17:38:34
Inappropriate implementation in Browser in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)
CVE-2026-17864
- EPSS 0.1%
- Veröffentlicht 30.07.2026 00:19:42
- Zuletzt bearbeitet 03.08.2026 17:38:25
Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Medium)
CVE-2026-17865
- EPSS 0.28%
- Veröffentlicht 30.07.2026 00:19:42
- Zuletzt bearbeitet 03.08.2026 17:43:47
Inappropriate implementation in Crypto in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Med...