CVE-2026-17802
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:25
- Zuletzt bearbeitet 04.08.2026 16:08:26
Side-channel information leakage in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17803
- EPSS 0.29%
- Veröffentlicht 30.07.2026 00:19:25
- Zuletzt bearbeitet 03.08.2026 17:55:04
Insufficient validation of untrusted input in Save to Drive in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted PDF file. (Chromium security ...
CVE-2026-17798
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:24
- Zuletzt bearbeitet 04.08.2026 16:08:39
Inappropriate implementation in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17799
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:24
- Zuletzt bearbeitet 03.08.2026 17:55:43
Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass discretionary access control via a malicious file. (Chromium security severity: Medium)
CVE-2026-17795
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:19:23
- Zuletzt bearbeitet 04.08.2026 16:08:58
Inappropriate implementation in GetUserMedia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17796
- EPSS 0.3%
- Veröffentlicht 30.07.2026 00:19:23
- Zuletzt bearbeitet 03.08.2026 17:55:56
Side-channel information leakage in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17797
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:19:23
- Zuletzt bearbeitet 04.08.2026 16:08:47
Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17791
- EPSS 0.26%
- Veröffentlicht 30.07.2026 00:19:22
- Zuletzt bearbeitet 04.08.2026 16:09:08
Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17792
- EPSS 0.26%
- Veröffentlicht 30.07.2026 00:19:22
- Zuletzt bearbeitet 04.08.2026 14:27:29
Inappropriate implementation in Credential Management in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17793
- EPSS 0.26%
- Veröffentlicht 30.07.2026 00:19:22
- Zuletzt bearbeitet 03.08.2026 13:44:26
Inappropriate implementation in Messages in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)