CVE-2026-17651
- EPSS 0.4%
- Veröffentlicht 30.07.2026 00:18:42
- Zuletzt bearbeitet 03.08.2026 12:13:26
Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-17652
- EPSS 0.4%
- Veröffentlicht 30.07.2026 00:18:42
- Zuletzt bearbeitet 06.08.2026 00:35:42
Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-16804
- EPSS 0.25%
- Veröffentlicht 23.07.2026 21:36:44
- Zuletzt bearbeitet 27.07.2026 12:46:03
Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16805
- EPSS 0.31%
- Veröffentlicht 23.07.2026 21:36:44
- Zuletzt bearbeitet 27.07.2026 12:45:44
Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16806
- EPSS 0.4%
- Veröffentlicht 23.07.2026 21:36:43
- Zuletzt bearbeitet 27.07.2026 12:45:30
Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16807
- EPSS 0.26%
- Veröffentlicht 23.07.2026 21:36:43
- Zuletzt bearbeitet 27.07.2026 12:45:14
Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16424
- EPSS 0.28%
- Veröffentlicht 21.07.2026 22:04:11
- Zuletzt bearbeitet 24.07.2026 15:07:41
Use after free in GPU in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16419
- EPSS 0.26%
- Veröffentlicht 21.07.2026 22:04:10
- Zuletzt bearbeitet 24.07.2026 15:41:33
Out of bounds read and write in ANGLE in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16422
- EPSS 0.15%
- Veröffentlicht 21.07.2026 22:04:10
- Zuletzt bearbeitet 24.07.2026 14:54:15
Insufficient validation of untrusted input in Certificate in Google Chrome on Linux prior to 150.0.7871.182 allowed an attacker in a privileged network position to perform domain spoofing via malicious network traffic. (Chromium security severity: Hi...
CVE-2026-16423
- EPSS 0.26%
- Veröffentlicht 21.07.2026 22:04:10
- Zuletzt bearbeitet 24.07.2026 15:07:36
Use after free in UI in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)