CVE-2026-78903
- EPSS 0.28%
- Veröffentlicht 25.08.2026 20:10:37
- Zuletzt bearbeitet 28.08.2026 16:00:30
Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78959
- EPSS 0.33%
- Veröffentlicht 25.08.2026 20:10:37
- Zuletzt bearbeitet 31.08.2026 18:59:21
Improper handling of case sensitivity in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79070
- EPSS 0.2%
- Veröffentlicht 25.08.2026 20:10:37
- Zuletzt bearbeitet 31.08.2026 16:38:49
Incorrect reference resolution in Cache in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79205
- EPSS 0.19%
- Veröffentlicht 25.08.2026 20:10:37
- Zuletzt bearbeitet 28.08.2026 14:35:49
Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79234
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:37
- Zuletzt bearbeitet 28.08.2026 14:35:22
Injection in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78949
- EPSS 0.15%
- Veröffentlicht 25.08.2026 20:10:36
- Zuletzt bearbeitet 31.08.2026 18:58:30
Observable discrepancy in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)
CVE-2026-79146
- EPSS 0.13%
- Veröffentlicht 25.08.2026 20:10:36
- Zuletzt bearbeitet 31.08.2026 14:57:59
Information leak in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)
CVE-2026-79238
- EPSS 0.17%
- Veröffentlicht 25.08.2026 20:10:36
- Zuletzt bearbeitet 28.08.2026 14:35:13
Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Medium)
CVE-2026-79283
- EPSS 0.17%
- Veröffentlicht 25.08.2026 20:10:36
- Zuletzt bearbeitet 28.08.2026 14:32:36
UI misrepresentation in Geometry in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79291
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:36
- Zuletzt bearbeitet 27.08.2026 17:49:41
Information leak in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)