CVE-2026-91709
- EPSS 0.36%
- Veröffentlicht 15.09.2026 20:41:30
- Zuletzt bearbeitet 17.09.2026 13:37:24
Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91733
- EPSS 0.29%
- Veröffentlicht 15.09.2026 20:41:30
- Zuletzt bearbeitet 17.09.2026 16:04:09
Improper state validation in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91741
- EPSS 0.39%
- Veröffentlicht 15.09.2026 20:41:30
- Zuletzt bearbeitet 17.09.2026 18:48:33
Type confusion in CacheStorage in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91747
- EPSS 0.23%
- Veröffentlicht 15.09.2026 20:41:30
- Zuletzt bearbeitet 17.09.2026 18:47:19
Use after free in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91720
- EPSS 0.25%
- Veröffentlicht 15.09.2026 20:41:29
- Zuletzt bearbeitet 17.09.2026 17:52:40
Uninitialized resource in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91731
- EPSS 0.39%
- Veröffentlicht 15.09.2026 20:41:29
- Zuletzt bearbeitet 17.09.2026 17:54:56
Type confusion in Compositing in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-91748
- EPSS 0.21%
- Veröffentlicht 15.09.2026 20:41:29
- Zuletzt bearbeitet 17.09.2026 18:47:04
Race condition in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via UI Intera...
CVE-2026-91712
- EPSS 0.25%
- Veröffentlicht 15.09.2026 20:41:28
- Zuletzt bearbeitet 17.09.2026 13:37:57
Race condition in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security se...
CVE-2026-91727
- EPSS 0.09%
- Veröffentlicht 15.09.2026 20:41:28
- Zuletzt bearbeitet 17.09.2026 17:54:03
Incorrect reference resolution in Extensions in Google Chrome on on Mac prior to 153.0.8010.47 allowed a local attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a local program. (Chromium security sev...
CVE-2026-91743
- EPSS 0.24%
- Veröffentlicht 15.09.2026 20:41:28
- Zuletzt bearbeitet 17.09.2026 18:48:20
Race condition in Core in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)