CVE-2026-79097
- EPSS 0.3%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 27.08.2026 04:17:23
Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79203
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 28.08.2026 14:36:00
Improper input validation in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79227
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 31.08.2026 18:22:32
Type confusion in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78913
- EPSS 0.31%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 27.08.2026 04:16:52
Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-78962
- EPSS 0.27%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 27.08.2026 17:33:30
Uninitialized resource in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79211
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 31.08.2026 14:15:36
Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79252
- EPSS 0.18%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 28.08.2026 14:32:53
Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79258
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 31.08.2026 13:48:46
Incorrect authorization in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78951
- EPSS 0.49%
- Veröffentlicht 25.08.2026 20:10:41
- Zuletzt bearbeitet 27.08.2026 04:17:06
Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79091
- EPSS 0.34%
- Veröffentlicht 25.08.2026 20:10:41
- Zuletzt bearbeitet 27.08.2026 04:17:23
Use after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)