CVE-2026-17751
- EPSS 0.37%
- Veröffentlicht 30.07.2026 00:19:11
- Zuletzt bearbeitet 03.08.2026 17:58:04
Inappropriate implementation in AdFilter in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17752
- EPSS 0.32%
- Veröffentlicht 30.07.2026 00:19:11
- Zuletzt bearbeitet 03.08.2026 17:57:01
Use after free in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17746
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:19:10
- Zuletzt bearbeitet 03.08.2026 17:58:37
Use after free in GPU in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17747
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:19:10
- Zuletzt bearbeitet 03.08.2026 13:46:25
Insufficient validation of untrusted input in Payments in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: ...
CVE-2026-17748
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:19:10
- Zuletzt bearbeitet 10.08.2026 14:14:29
Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17742
- EPSS 0.15%
- Veröffentlicht 30.07.2026 00:19:09
- Zuletzt bearbeitet 31.07.2026 15:28:51
Insufficient policy enforcement in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17743
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:19:09
- Zuletzt bearbeitet 10.08.2026 14:14:25
Insufficient policy enforcement in ControlledFrame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17744
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:09
- Zuletzt bearbeitet 03.08.2026 17:45:16
Inappropriate implementation in File Input in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17745
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:19:09
- Zuletzt bearbeitet 03.08.2026 17:45:06
Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17738
- EPSS 0.32%
- Veröffentlicht 30.07.2026 00:19:08
- Zuletzt bearbeitet 10.08.2026 14:14:20
Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security seve...