CVE-2026-16416
- EPSS 0.1%
- Veröffentlicht 21.07.2026 22:04:09
- Zuletzt bearbeitet 30.07.2026 19:17:09
Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform a sandbox escape via malicious network traffic. (Chromium security severity: High)
CVE-2026-16417
- EPSS 0.21%
- Veröffentlicht 21.07.2026 22:04:09
- Zuletzt bearbeitet 24.07.2026 15:55:19
Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16418
- EPSS 0.33%
- Veröffentlicht 21.07.2026 22:04:09
- Zuletzt bearbeitet 24.07.2026 15:41:46
Stack buffer overflow in V8 in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16414
- EPSS 0.09%
- Veröffentlicht 21.07.2026 22:04:08
- Zuletzt bearbeitet 30.07.2026 19:17:09
Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform a sandbox escape via malicious network traffic. (Chromium security severity: High)
CVE-2026-16415
- EPSS 0.2%
- Veröffentlicht 21.07.2026 22:04:08
- Zuletzt bearbeitet 24.07.2026 15:55:40
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16413
- EPSS 0.26%
- Veröffentlicht 21.07.2026 22:04:07
- Zuletzt bearbeitet 24.07.2026 15:56:20
Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16420
- EPSS 0.36%
- Veröffentlicht 21.07.2026 22:04:06
- Zuletzt bearbeitet 24.07.2026 15:41:20
Type Confusion in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-16421
- EPSS 0.33%
- Veröffentlicht 21.07.2026 22:04:06
- Zuletzt bearbeitet 24.07.2026 15:40:30
Inappropriate implementation in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-15905
- EPSS 0.12%
- Veröffentlicht 20.07.2026 22:31:25
- Zuletzt bearbeitet 24.07.2026 15:08:48
Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit heap corruption via a malicious file. (Chromium security severity: High)
CVE-2026-15903
- EPSS 0.39%
- Veröffentlicht 20.07.2026 22:31:24
- Zuletzt bearbeitet 24.07.2026 14:37:00
Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)