CVE-2026-79095
- EPSS 0.23%
- Veröffentlicht 25.08.2026 20:10:20
- Zuletzt bearbeitet 28.08.2026 14:40:54
Information leak in Payments in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79116
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:20
- Zuletzt bearbeitet 31.08.2026 16:53:36
Missing authorization in Viz in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78942
- EPSS 0.3%
- Veröffentlicht 25.08.2026 20:10:19
- Zuletzt bearbeitet 28.08.2026 17:32:25
Incorrect reference resolution in Loader in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-79128
- EPSS 0.33%
- Veröffentlicht 25.08.2026 20:10:19
- Zuletzt bearbeitet 27.08.2026 13:04:57
Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79140
- EPSS 0.41%
- Veröffentlicht 25.08.2026 20:10:19
- Zuletzt bearbeitet 27.08.2026 13:14:03
Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79192
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:19
- Zuletzt bearbeitet 28.08.2026 14:36:21
Improper input validation in Variations in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-78909
- EPSS 0.44%
- Veröffentlicht 25.08.2026 20:10:18
- Zuletzt bearbeitet 27.08.2026 04:16:52
Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78990
- EPSS 0.55%
- Veröffentlicht 25.08.2026 20:10:18
- Zuletzt bearbeitet 27.08.2026 04:17:10
Use after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79065
- EPSS 0.28%
- Veröffentlicht 25.08.2026 20:10:18
- Zuletzt bearbeitet 31.08.2026 16:37:44
Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79144
- EPSS 0.23%
- Veröffentlicht 25.08.2026 20:10:18
- Zuletzt bearbeitet 31.08.2026 16:52:22
Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)