Google

Chrome

292 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 26.08.2025 18:51:35
  • Zuletzt bearbeitet 02.09.2025 18:09:31

Use after free in ANGLE in Google Chrome prior to 139.0.7258.154 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

Exploit
  • EPSS 0.03%
  • Veröffentlicht 22.08.2025 21:15:31
  • Zuletzt bearbeitet 25.08.2025 20:44:35

Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 136.0.7103.113 allowed a remote attacker to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)

  • EPSS 0.15%
  • Veröffentlicht 20.08.2025 00:41:12
  • Zuletzt bearbeitet 21.08.2025 18:25:50

Out of bounds write in V8 in Google Chrome prior to 139.0.7258.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.08%
  • Veröffentlicht 13.08.2025 03:15:40
  • Zuletzt bearbeitet 26.09.2025 17:34:17

Out of bounds write in ANGLE in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.16%
  • Veröffentlicht 13.08.2025 03:15:39
  • Zuletzt bearbeitet 26.02.2026 19:32:33

Use after free in Aura in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.02%
  • Veröffentlicht 13.08.2025 03:15:38
  • Zuletzt bearbeitet 14.08.2025 01:07:16

Inappropriate implementation in File Picker in Google Chrome prior to 139.0.7258.127 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medi...

  • EPSS 0.12%
  • Veröffentlicht 13.08.2025 03:15:37
  • Zuletzt bearbeitet 14.08.2025 01:07:29

Race in V8 in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

  • EPSS 0.11%
  • Veröffentlicht 13.08.2025 03:15:33
  • Zuletzt bearbeitet 26.09.2025 17:33:53

Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a curated set of gestures. (Chromium security severity: High)

  • EPSS 0.05%
  • Veröffentlicht 07.08.2025 01:30:40
  • Zuletzt bearbeitet 08.08.2025 18:23:49

Inappropriate implementation in Permissions in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.05%
  • Veröffentlicht 07.08.2025 01:30:39
  • Zuletzt bearbeitet 08.08.2025 18:24:30

Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: L...