CVE-2026-106293
- EPSS 0.32%
- Veröffentlicht 06.10.2026 18:41:08
- Zuletzt bearbeitet 07.10.2026 13:43:24
Type confusion in ANGLE in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106364
- EPSS 0.21%
- Veröffentlicht 06.10.2026 18:41:08
- Zuletzt bearbeitet 06.10.2026 20:17:24
Incorrect authorization in Omnibox in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106377
- EPSS 0.26%
- Veröffentlicht 06.10.2026 18:41:08
- Zuletzt bearbeitet 07.10.2026 13:46:14
Race condition in Fonts in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106412
- EPSS 0.24%
- Veröffentlicht 06.10.2026 18:41:08
- Zuletzt bearbeitet 07.10.2026 13:39:08
Race condition in Core in Google Chrome on on Mac prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML ...
CVE-2026-106215
- EPSS 0.28%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 07.10.2026 20:47:09
Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 155.0.8059.39 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106258
- EPSS 0.19%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 08.10.2026 18:00:52
Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 155.0.8059.39 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106308
- EPSS 0.28%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 07.10.2026 13:42:42
Incorrect reference resolution in Autofill in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)
- EPSS 0.2%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 06.10.2026 19:57:00
Incomplete cleanup in CustomTabs in Google Chrome on on Android prior to 155.0.8059.39 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)
- EPSS 0.19%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 06.10.2026 19:57:00
Missing authorization in Translate in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106376
- EPSS 0.19%
- Veröffentlicht 06.10.2026 18:41:07
- Zuletzt bearbeitet 07.10.2026 16:17:37
Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 155.0.8059.39 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)