CVE-2026-17739
- EPSS 0.14%
- Veröffentlicht 30.07.2026 00:19:08
- Zuletzt bearbeitet 03.08.2026 17:45:21
Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary scripts or HTML (UXSS) via a crafted Chrome Extension. (Chromium secur...
CVE-2026-17740
- EPSS 0.24%
- Veröffentlicht 30.07.2026 00:19:08
- Zuletzt bearbeitet 31.07.2026 15:28:39
Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17741
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:08
- Zuletzt bearbeitet 03.08.2026 13:47:24
Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17735
- EPSS 0.29%
- Veröffentlicht 30.07.2026 00:19:07
- Zuletzt bearbeitet 10.08.2026 14:14:15
Insufficient validation of untrusted input in BFCache in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security sever...
CVE-2026-17736
- EPSS 0.19%
- Veröffentlicht 30.07.2026 00:19:07
- Zuletzt bearbeitet 03.08.2026 13:47:19
Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium sec...
- EPSS 0.18%
- Veröffentlicht 30.07.2026 00:19:07
- Zuletzt bearbeitet 03.08.2026 13:47:21
Use after free in Bluetooth in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17730
- EPSS 0.22%
- Veröffentlicht 30.07.2026 00:19:06
- Zuletzt bearbeitet 31.07.2026 15:28:27
Side-channel information leakage in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medi...
CVE-2026-17731
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:06
- Zuletzt bearbeitet 03.08.2026 13:47:01
Inappropriate implementation in Autofill in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17733
- EPSS 0.2%
- Veröffentlicht 30.07.2026 00:19:06
- Zuletzt bearbeitet 03.08.2026 13:47:15
Inappropriate implementation in QUIC in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-17734
- EPSS 0.21%
- Veröffentlicht 30.07.2026 00:19:06
- Zuletzt bearbeitet 10.08.2026 14:14:10
Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)