CVE-2026-106241
- EPSS 0.33%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 07.10.2026 13:53:07
Incorrect authorization in Search in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security seve...
CVE-2026-106242
- EPSS 0.23%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 08.10.2026 12:17:14
Information leak in Omnibox in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to leak sensitive information via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-106283
- EPSS 0.3%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 07.10.2026 13:43:53
Use after free in Streaming in Google Chrome prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106291
- EPSS 0.3%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 07.10.2026 13:43:38
Use after free in GarbageCollection in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106300
- EPSS 0.16%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 07.10.2026 18:04:42
Race condition in CacheStorage in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106314
- EPSS 0.24%
- Veröffentlicht 06.10.2026 18:41:17
- Zuletzt bearbeitet 07.10.2026 13:42:19
Incorrect authorization in Bluetooth in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106194
- EPSS 0.35%
- Veröffentlicht 06.10.2026 18:41:16
- Zuletzt bearbeitet 08.10.2026 13:03:54
Missing authorization in WebAppInstalls in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafte...
- EPSS 0.18%
- Veröffentlicht 06.10.2026 18:41:16
- Zuletzt bearbeitet 06.10.2026 19:57:00
Missing authorization in Network in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106274
- EPSS 0.24%
- Veröffentlicht 06.10.2026 18:41:16
- Zuletzt bearbeitet 06.10.2026 21:17:09
Incorrect reference resolution in Browser in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-106313
- EPSS 0.09%
- Veröffentlicht 06.10.2026 18:41:16
- Zuletzt bearbeitet 07.10.2026 13:42:23
Incorrect authorization in Browser in Google Chrome on on Android prior to 155.0.8059.39 allowed a local attacker leveraging social engineering to obtain sensitive information via a co-installed app. (Chromium security severity: Medium)