Google

Chrome

3393 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 17.09.2026 21:17:54
  • Zuletzt bearbeitet 21.09.2026 15:04:30

Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

  • EPSS 0.31%
  • Veröffentlicht 17.09.2026 21:17:54
  • Zuletzt bearbeitet 21.09.2026 15:15:41

Use after free in Extensions in Google Chrome prior to 153.0.8010.52 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: High)

Medienbericht
  • EPSS 0.35%
  • Veröffentlicht 17.09.2026 21:17:54
  • Zuletzt bearbeitet 21.09.2026 15:17:38

Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

  • EPSS 0.09%
  • Veröffentlicht 17.09.2026 21:17:54
  • Zuletzt bearbeitet 21.09.2026 15:24:05

Incorrect reference resolution in Tracing in Google Chrome on on Windows prior to 153.0.8010.52 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)

  • EPSS 0.09%
  • Veröffentlicht 17.09.2026 21:17:54
  • Zuletzt bearbeitet 21.09.2026 12:54:26

Out of bounds read in DataTransfer in Google Chrome prior to 153.0.8010.52 allowed a local attacker leveraging social engineering to read memory outside the sandbox via a local program. (Chromium security severity: Medium)

  • EPSS 0.26%
  • Veröffentlicht 15.09.2026 20:41:36
  • Zuletzt bearbeitet 18.09.2026 14:19:02

Code injection in XML in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.24%
  • Veröffentlicht 15.09.2026 20:41:36
  • Zuletzt bearbeitet 17.09.2026 17:52:55

Use after free in Input in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.24%
  • Veröffentlicht 15.09.2026 20:41:36
  • Zuletzt bearbeitet 17.09.2026 17:54:43

Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain cross-origin data via a crafted HTML page. (Chromium security sev...

  • EPSS 0.21%
  • Veröffentlicht 15.09.2026 20:41:35
  • Zuletzt bearbeitet 17.09.2026 13:38:03

Missing authorization in Browser in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.21%
  • Veröffentlicht 15.09.2026 20:41:35
  • Zuletzt bearbeitet 17.09.2026 17:53:27

Observable discrepancy in CSS in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)