CVE-2026-106248
- EPSS 0.3%
- Veröffentlicht 06.10.2026 18:41:11
- Zuletzt bearbeitet 07.10.2026 13:39:48
Use after free in Bindings in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106255
- EPSS 0.24%
- Veröffentlicht 06.10.2026 18:41:11
- Zuletzt bearbeitet 07.10.2026 13:12:51
Race condition in V8 in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106329
- EPSS 0.36%
- Veröffentlicht 06.10.2026 18:41:11
- Zuletzt bearbeitet 07.10.2026 13:38:27
Incorrect authorization in FileSystem in Google Chrome prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High...
CVE-2026-106379
- EPSS 0.22%
- Veröffentlicht 06.10.2026 18:41:11
- Zuletzt bearbeitet 07.10.2026 13:45:26
Uninitialized resource in Skia in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106393
- EPSS 0.3%
- Veröffentlicht 06.10.2026 18:41:11
- Zuletzt bearbeitet 07.10.2026 13:41:03
Use after free in Storage in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106193
- EPSS 0.34%
- Veröffentlicht 06.10.2026 18:41:10
- Zuletzt bearbeitet 08.10.2026 13:04:01
Use after free in Parser in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106203
- EPSS 0.31%
- Veröffentlicht 06.10.2026 18:41:10
- Zuletzt bearbeitet 08.10.2026 12:12:55
Incomplete cleanup in Autofill in Google Chrome on on iOS prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106273
- EPSS 0.19%
- Veröffentlicht 06.10.2026 18:41:10
- Zuletzt bearbeitet 07.10.2026 16:17:35
Uninitialized resource in Video in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106281
- EPSS 0.34%
- Veröffentlicht 06.10.2026 18:41:10
- Zuletzt bearbeitet 07.10.2026 13:44:17
Use after free in Tint in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106298
- EPSS 0.34%
- Veröffentlicht 06.10.2026 18:41:10
- Zuletzt bearbeitet 07.10.2026 13:43:11
Use after free in Chrome Tabs in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)