Google

Chrome

651 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Veröffentlicht 14.05.2026 19:52:40
  • Zuletzt bearbeitet 15.05.2026 15:16:55

Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.08%
  • Veröffentlicht 14.05.2026 19:52:40
  • Zuletzt bearbeitet 14.05.2026 21:19:23

Integer overflow in Fonts in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.07%
  • Veröffentlicht 14.05.2026 19:52:39
  • Zuletzt bearbeitet 14.05.2026 22:16:51

Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.07%
  • Veröffentlicht 14.05.2026 19:52:37
  • Zuletzt bearbeitet 14.05.2026 22:16:50

Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.07%
  • Veröffentlicht 14.05.2026 19:52:34
  • Zuletzt bearbeitet 14.05.2026 22:16:50

Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)

  • EPSS 0.03%
  • Veröffentlicht 14.05.2026 19:52:33
  • Zuletzt bearbeitet 14.05.2026 22:16:50

Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.09%
  • Veröffentlicht 14.05.2026 19:52:33
  • Zuletzt bearbeitet 14.05.2026 22:16:50

Insufficient policy enforcement in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity...

  • EPSS 0.03%
  • Veröffentlicht 14.05.2026 19:52:33
  • Zuletzt bearbeitet 15.05.2026 15:16:55

Insufficient policy enforcement in Network in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.03%
  • Veröffentlicht 14.05.2026 19:52:32
  • Zuletzt bearbeitet 15.05.2026 15:16:55

Insufficient policy enforcement in AI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to bypass Site Isolation via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.07%
  • Veröffentlicht 14.05.2026 19:52:32
  • Zuletzt bearbeitet 14.05.2026 22:16:50

Out of bounds write in Codecs in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)