CVE-2026-7912
- EPSS 0.03%
- Veröffentlicht 06.05.2026 18:12:30
- Zuletzt bearbeitet 06.05.2026 23:40:48
Integer overflow in GPU in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7908
- EPSS 0.07%
- Veröffentlicht 06.05.2026 18:12:29
- Zuletzt bearbeitet 06.05.2026 23:41:13
Use after free in Fullscreen in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7909
- EPSS 0.03%
- Veröffentlicht 06.05.2026 18:12:29
- Zuletzt bearbeitet 06.05.2026 23:41:05
Inappropriate implementation in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7910
- EPSS 0.02%
- Veröffentlicht 06.05.2026 18:12:29
- Zuletzt bearbeitet 12.05.2026 20:16:46
Use after free in Views in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7905
- EPSS 0.1%
- Veröffentlicht 06.05.2026 18:12:28
- Zuletzt bearbeitet 06.05.2026 23:42:08
Insufficient validation of untrusted input in Media in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium secur...
CVE-2026-7906
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:28
- Zuletzt bearbeitet 06.05.2026 23:42:01
Use after free in SVG in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7907
- EPSS 0.08%
- Veröffentlicht 06.05.2026 18:12:28
- Zuletzt bearbeitet 06.05.2026 23:41:21
Use after free in DOM in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7903
- EPSS 0.07%
- Veröffentlicht 06.05.2026 18:12:27
- Zuletzt bearbeitet 06.05.2026 23:42:19
Integer overflow in ANGLE in Google Chrome on Mac,Windows prior to 148.0.7778.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7904
- EPSS 0.03%
- Veröffentlicht 06.05.2026 18:12:27
- Zuletzt bearbeitet 06.05.2026 23:42:14
Out of bounds read in Fonts in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
CVE-2026-7900
- EPSS 0.06%
- Veröffentlicht 06.05.2026 18:12:26
- Zuletzt bearbeitet 06.05.2026 23:42:50
Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)