CVE-2026-4450
- EPSS 0.07%
- Veröffentlicht 20.03.2026 02:16:37
- Zuletzt bearbeitet 20.03.2026 18:05:22
Out of bounds write in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-4439
- EPSS 0.07%
- Veröffentlicht 20.03.2026 02:16:36
- Zuletzt bearbeitet 20.03.2026 19:20:32
Out of bounds memory access in WebGL in Google Chrome on Android prior to 146.0.7680.153 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-4440
- EPSS 0.07%
- Veröffentlicht 20.03.2026 02:16:36
- Zuletzt bearbeitet 20.03.2026 19:27:12
Out of bounds read and write in WebGL in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-4441
- EPSS 0.1%
- Veröffentlicht 20.03.2026 02:16:36
- Zuletzt bearbeitet 20.03.2026 19:31:19
Use after free in Base in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2026-4442
- EPSS 0.07%
- Veröffentlicht 20.03.2026 02:16:36
- Zuletzt bearbeitet 20.03.2026 19:31:45
Heap buffer overflow in CSS in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2026-4443
- EPSS 0.07%
- Veröffentlicht 20.03.2026 02:16:36
- Zuletzt bearbeitet 20.03.2026 19:32:00
Heap buffer overflow in WebAudio in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-3909
- EPSS 4.44%
- Veröffentlicht 12.03.2026 21:30:51
- Zuletzt bearbeitet 13.03.2026 20:24:40
Out of bounds write in Skia in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
CVE-2026-3910
- EPSS 1.33%
- Veröffentlicht 12.03.2026 21:30:51
- Zuletzt bearbeitet 13.03.2026 20:24:29
Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-3941
- EPSS 0.03%
- Veröffentlicht 11.03.2026 22:04:17
- Zuletzt bearbeitet 13.03.2026 15:41:43
Insufficient policy enforcement in DevTools in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-3942
- EPSS 0.03%
- Veröffentlicht 11.03.2026 22:04:17
- Zuletzt bearbeitet 13.03.2026 15:41:48
Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)