CVE-2026-87520
- EPSS 0.4%
- Veröffentlicht 09.09.2026 00:09:33
- Zuletzt bearbeitet 10.09.2026 04:18:23
Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-87524
- EPSS 0.35%
- Veröffentlicht 09.09.2026 00:09:33
- Zuletzt bearbeitet 10.09.2026 04:18:23
Use after free in Core in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security seve...
CVE-2026-87554
- EPSS 0.09%
- Veröffentlicht 09.09.2026 00:09:33
- Zuletzt bearbeitet 10.09.2026 04:18:26
Race condition in Chromoting in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)
CVE-2026-87569
- EPSS 0.25%
- Veröffentlicht 09.09.2026 00:09:33
- Zuletzt bearbeitet 10.09.2026 16:18:06
Missing authorization in Views in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: High)
CVE-2026-87440
- EPSS 0.44%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 04:18:19
Out of bounds read in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-87444
- EPSS 0.44%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 04:18:19
Memory corruption in Codecs in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-87447
- EPSS 0.29%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 19:17:47
Incorrect authorization in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: High)
CVE-2026-87525
- EPSS 0.1%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 19:23:32
Out of bounds read in Chromoting in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to read memory outside the sandbox via a local program. (Chromium security severity: High)
CVE-2026-87578
- EPSS 0.13%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 04:18:26
Use after free in Receiver in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)
CVE-2026-87633
- EPSS 0.16%
- Veröffentlicht 09.09.2026 00:09:32
- Zuletzt bearbeitet 10.09.2026 04:18:30
Use after free in Views in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)