Google

Chrome

3393 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 09.09.2026 00:09:53
  • Zuletzt bearbeitet 09.09.2026 20:21:41

Missing authorization in FedCM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.31%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 09.09.2026 16:37:04

Information leak in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.22%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 09.09.2026 16:38:24

Information leak in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Exploit
  • EPSS 0.19%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 10.09.2026 18:33:53

Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.19%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 10.09.2026 18:46:32

Information leak in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.31%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 09.09.2026 20:24:45

Uninitialized resource in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.23%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 10.09.2026 16:18:06

Incorrect authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass site isolation via a crafted file. (Chromium security sever...

  • EPSS 0.22%
  • Veröffentlicht 09.09.2026 00:09:52
  • Zuletzt bearbeitet 11.09.2026 13:57:19

Improper input validation in Safebrowsing in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)

Exploit
  • EPSS 0.27%
  • Veröffentlicht 09.09.2026 00:09:51
  • Zuletzt bearbeitet 10.09.2026 19:19:46

Missing authorization in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)

  • EPSS 0.24%
  • Veröffentlicht 09.09.2026 00:09:51
  • Zuletzt bearbeitet 09.09.2026 20:30:48

UI misrepresentation in Geometry in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)