CVE-2026-17794
- EPSS 0.23%
- Veröffentlicht 30.07.2026 00:19:22
- Zuletzt bearbeitet 03.08.2026 13:44:12
Insufficient validation of untrusted input in Mobile in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromi...
CVE-2026-17787
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:19:21
- Zuletzt bearbeitet 04.08.2026 14:28:29
Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17788
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:21
- Zuletzt bearbeitet 04.08.2026 14:28:20
Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17789
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:19:21
- Zuletzt bearbeitet 04.08.2026 16:09:15
Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via malicious network traffic. (Chromium security severity: Medium)
CVE-2026-17790
- EPSS 0.27%
- Veröffentlicht 30.07.2026 00:19:21
- Zuletzt bearbeitet 03.08.2026 15:01:18
Uninitialized Use in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17784
- EPSS 0.32%
- Veröffentlicht 30.07.2026 00:19:20
- Zuletzt bearbeitet 04.08.2026 14:29:06
Use after free in Audio in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17785
- EPSS 0.27%
- Veröffentlicht 30.07.2026 00:19:20
- Zuletzt bearbeitet 04.08.2026 14:28:54
Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17786
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:19:20
- Zuletzt bearbeitet 04.08.2026 14:28:44
Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to perform privilege escalation via a crafted Chrome Extension. (Chromium securit...
CVE-2026-17780
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:19:19
- Zuletzt bearbeitet 04.08.2026 14:29:59
Inappropriate implementation in Isolated Web Apps in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17781
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:19:19
- Zuletzt bearbeitet 03.08.2026 17:56:04
Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Medium...