CVE-2026-102322
- EPSS 0.4%
- Veröffentlicht 06.10.2026 18:41:06
- Zuletzt bearbeitet 08.10.2026 13:42:02
Incorrect Authorization in SiteIsolation in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106245
- EPSS 0.22%
- Veröffentlicht 06.10.2026 18:41:06
- Zuletzt bearbeitet 07.10.2026 13:40:45
Uninitialized resource in ANGLE in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)
- EPSS 0.19%
- Veröffentlicht 06.10.2026 18:41:06
- Zuletzt bearbeitet 06.10.2026 19:57:00
Incorrect authorization in Core in Google Chrome prior to 155.0.8059.39 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: High)
CVE-2026-106347
- EPSS 0.31%
- Veröffentlicht 06.10.2026 18:41:06
- Zuletzt bearbeitet 07.10.2026 04:18:03
Use after free in Track in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-106197
- EPSS 0.4%
- Veröffentlicht 06.10.2026 18:41:05
- Zuletzt bearbeitet 08.10.2026 13:03:34
Use after free in Browser in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-106358
- EPSS 0.44%
- Veröffentlicht 06.10.2026 18:41:05
- Zuletzt bearbeitet 07.10.2026 04:18:05
Use after free in Navigation in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-106382
- EPSS 0.4%
- Veröffentlicht 06.10.2026 18:41:05
- Zuletzt bearbeitet 07.10.2026 13:45:17
Use after free in Chromecast in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-103629
- EPSS 0.18%
- Veröffentlicht 02.10.2026 16:16:44
- Zuletzt bearbeitet 05.10.2026 15:06:24
Integer overflow in Skia in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
CVE-2026-103630
- EPSS 0.22%
- Veröffentlicht 02.10.2026 16:16:44
- Zuletzt bearbeitet 06.10.2026 16:22:17
Use after free in FedCM in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-103631
- EPSS 0.25%
- Veröffentlicht 02.10.2026 16:16:44
- Zuletzt bearbeitet 06.10.2026 19:12:19
Buffer overflow in WebRTC in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)