CVE-2026-11307
- EPSS 0.23%
- Veröffentlicht 04.06.2026 23:06:27
- Zuletzt bearbeitet 23.07.2026 07:10:00
Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: Low)
CVE-2026-11308
- EPSS 0.1%
- Veröffentlicht 04.06.2026 23:06:27
- Zuletzt bearbeitet 23.07.2026 07:10:00
Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to perform privilege escalation via a crafted Chrome Extension. (Chromium security severity: ...
CVE-2026-11304
- EPSS 0.19%
- Veröffentlicht 04.06.2026 23:06:26
- Zuletzt bearbeitet 23.07.2026 07:10:00
Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Low)
CVE-2026-11305
- EPSS 0.23%
- Veröffentlicht 04.06.2026 23:06:26
- Zuletzt bearbeitet 23.07.2026 07:10:00
Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: Low)
CVE-2026-11301
- EPSS 0.21%
- Veröffentlicht 04.06.2026 23:06:25
- Zuletzt bearbeitet 23.07.2026 07:10:00
Inappropriate implementation in LiveCaption in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory access via malicious network traffic. (Chromium security severity: Low)
CVE-2026-11302
- EPSS 0.18%
- Veröffentlicht 04.06.2026 23:06:25
- Zuletzt bearbeitet 23.07.2026 07:10:00
Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-11303
- EPSS 0.24%
- Veröffentlicht 04.06.2026 23:06:25
- Zuletzt bearbeitet 23.07.2026 07:10:00
Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: Low)
CVE-2026-11299
- EPSS 0.2%
- Veröffentlicht 04.06.2026 23:06:24
- Zuletzt bearbeitet 23.07.2026 07:10:00
Integer overflow in Fonts in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-11300
- EPSS 0.15%
- Veröffentlicht 04.06.2026 23:06:24
- Zuletzt bearbeitet 23.07.2026 07:10:00
Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-11296
- EPSS 0.18%
- Veröffentlicht 04.06.2026 23:06:23
- Zuletzt bearbeitet 23.07.2026 07:10:00
Inappropriate implementation in ImageCapture in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: Low)