Google

Chrome

3393 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.24%
  • Veröffentlicht 09.09.2026 00:09:54
  • Zuletzt bearbeitet 10.09.2026 19:15:33

UI misrepresentation in Geometry in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.34%
  • Veröffentlicht 09.09.2026 00:09:54
  • Zuletzt bearbeitet 09.09.2026 17:52:51

Use after free in Browser in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.14%
  • Veröffentlicht 09.09.2026 00:09:54
  • Zuletzt bearbeitet 10.09.2026 04:18:24

Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)

  • EPSS 0.24%
  • Veröffentlicht 09.09.2026 00:09:54
  • Zuletzt bearbeitet 09.09.2026 20:26:12

Improper encoding or escaping of output in CSS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Exploit
  • EPSS 0.18%
  • Veröffentlicht 09.09.2026 00:09:54
  • Zuletzt bearbeitet 11.09.2026 14:28:57

Incorrect authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.19%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 10.09.2026 16:18:04

Incorrect authorization in Permissions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Medium)

Exploit
  • EPSS 0.16%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 10.09.2026 19:23:56

Incorrect authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted PDF file. (Chromium security severity: Medium)

  • EPSS 0.26%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 09.09.2026 18:12:57

Observable discrepancy in Safebrowsing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severi...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 10.09.2026 18:45:25

Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.21%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 09.09.2026 17:47:57

Incorrect authorization in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)