CVE-2026-79137
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:22
- Zuletzt bearbeitet 31.08.2026 16:53:23
Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)
CVE-2026-79231
- EPSS 0.37%
- Veröffentlicht 25.08.2026 20:10:22
- Zuletzt bearbeitet 31.08.2026 18:21:54
Buffer overflow in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78891
- EPSS 0.42%
- Veröffentlicht 25.08.2026 20:10:21
- Zuletzt bearbeitet 27.08.2026 04:16:50
Buffer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79031
- EPSS 0.39%
- Veröffentlicht 25.08.2026 20:10:21
- Zuletzt bearbeitet 28.08.2026 14:38:34
Improper resource exposure in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79110
- EPSS 0.24%
- Veröffentlicht 25.08.2026 20:10:21
- Zuletzt bearbeitet 31.08.2026 16:53:44
Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79136
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:21
- Zuletzt bearbeitet 31.08.2026 16:53:27
Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79248
- EPSS 0.24%
- Veröffentlicht 25.08.2026 20:10:21
- Zuletzt bearbeitet 28.08.2026 14:35:01
Incorrect authorization in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78991
- EPSS 0.35%
- Veröffentlicht 25.08.2026 20:10:20
- Zuletzt bearbeitet 27.08.2026 17:51:15
Race condition in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79006
- EPSS 0.26%
- Veröffentlicht 25.08.2026 20:10:20
- Zuletzt bearbeitet 28.08.2026 14:41:02
Protection mechanism failure in HttpsUpgrades in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-79084
- EPSS 0.13%
- Veröffentlicht 25.08.2026 20:10:20
- Zuletzt bearbeitet 28.08.2026 17:31:18
Inadequate encryption strength in Notifications in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)