CVE-2026-85051
- EPSS 0.34%
- Veröffentlicht 03.09.2026 19:26:14
- Zuletzt bearbeitet 08.09.2026 16:18:03
Type confusion in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85042
- EPSS 0.35%
- Veröffentlicht 03.09.2026 19:26:13
- Zuletzt bearbeitet 08.09.2026 16:27:28
Use after free in DevTools in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85045
- EPSS 0.24%
- Veröffentlicht 03.09.2026 19:26:13
- Zuletzt bearbeitet 08.09.2026 16:19:32
Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85048
- EPSS 0.33%
- Veröffentlicht 03.09.2026 19:26:13
- Zuletzt bearbeitet 08.09.2026 16:19:00
Use after free in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85050
- EPSS 0.35%
- Veröffentlicht 03.09.2026 19:26:13
- Zuletzt bearbeitet 08.09.2026 16:18:19
Out of bounds write in WebGL in Google Chrome on on Android prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85053
- EPSS 0.31%
- Veröffentlicht 03.09.2026 19:26:13
- Zuletzt bearbeitet 08.09.2026 16:17:19
Improper resource exposure in CacheStorage in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85043
- EPSS 0.32%
- Veröffentlicht 03.09.2026 19:26:12
- Zuletzt bearbeitet 08.09.2026 16:27:14
Incomplete cleanup in Network in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to bypass system access restrictions via crafted network traffic. (Chromium security severity: High)
CVE-2026-85046
- EPSS 0.89%
- Veröffentlicht 03.09.2026 19:26:12
- Zuletzt bearbeitet 21.09.2026 13:17:10
Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-85052
- EPSS 0.2%
- Veröffentlicht 03.09.2026 19:26:12
- Zuletzt bearbeitet 08.09.2026 16:17:47
Out of bounds read in CrashReporting in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2026-84331
- EPSS 0.16%
- Veröffentlicht 01.09.2026 23:42:30
- Zuletzt bearbeitet 03.09.2026 17:10:37
Incorrect authorization in Actor in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)