CVE-2026-84354
- EPSS 0.24%
- Veröffentlicht 01.09.2026 23:42:25
- Zuletzt bearbeitet 03.09.2026 17:35:02
Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-82072
- EPSS 0.29%
- Veröffentlicht 27.08.2026 23:04:56
- Zuletzt bearbeitet 29.08.2026 04:18:08
Out of bounds read in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78964
- EPSS 0.49%
- Veröffentlicht 25.08.2026 20:11:00
- Zuletzt bearbeitet 27.08.2026 04:17:08
Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-78914
- EPSS 0.24%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 27.08.2026 16:23:08
Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-78915
- EPSS 0.12%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 27.08.2026 17:20:44
Race condition in Enterprise in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Low)
CVE-2026-79126
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 27.08.2026 13:31:43
Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially obtain sensitive information via crafted network traffic. (Chromium security severity: Low)
CVE-2026-79253
- EPSS 0.25%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 26.08.2026 20:17:35
Improper input validation in Network in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79254
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 27.08.2026 13:38:51
Incorrect reference resolution in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79260
- EPSS 0.23%
- Veröffentlicht 25.08.2026 20:10:59
- Zuletzt bearbeitet 31.08.2026 16:51:11
Improper input validation in Cookies in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-78957
- EPSS 0.11%
- Veröffentlicht 25.08.2026 20:10:58
- Zuletzt bearbeitet 02.09.2026 00:13:50
Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a local attacker to obtain sensitive information via a crafted file. (Chromium security severity: Low)