CVE-2026-102315
- EPSS 0.21%
- Veröffentlicht 29.09.2026 19:45:06
- Zuletzt bearbeitet 30.09.2026 14:58:44
Uninitialized resource in Media in Google Chrome on on Windows prior to 154.0.8037.92 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102320
- EPSS 0.23%
- Veröffentlicht 29.09.2026 19:45:06
- Zuletzt bearbeitet 30.09.2026 19:37:27
Missing authorization in CORS in Google Chrome prior to 154.0.8037.92 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-102321
- EPSS 0.34%
- Veröffentlicht 29.09.2026 19:45:06
- Zuletzt bearbeitet 30.09.2026 14:57:38
Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102301
- EPSS 0.26%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 01.10.2026 17:28:13
Out of bounds write in GPU in Google Chrome prior to 154.0.8037.92 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High...
CVE-2026-102308
- EPSS 0.31%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 30.09.2026 16:25:33
Use after free in Views in Google Chrome prior to 154.0.8037.92 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102318
- EPSS 0.21%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 30.09.2026 15:41:51
Out of bounds read in WebGL in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102319
- EPSS 0.21%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 30.09.2026 14:57:51
Uninitialized resource in GPU in Google Chrome prior to 154.0.8037.92 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102324
- EPSS 0.27%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 30.09.2026 14:56:31
Use after free in PictureInPicture in Google Chrome prior to 154.0.8037.92 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severi...
CVE-2026-102329
- EPSS 0.18%
- Veröffentlicht 29.09.2026 19:45:05
- Zuletzt bearbeitet 30.09.2026 19:35:51
Cross-site scripting in WebUI in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: High)
CVE-2026-102304
- EPSS 0.31%
- Veröffentlicht 29.09.2026 19:45:04
- Zuletzt bearbeitet 30.09.2026 21:10:32
Use after free in Passwords in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)