CVE-2026-84350
- EPSS 0.21%
- Veröffentlicht 01.09.2026 23:42:30
- Zuletzt bearbeitet 03.09.2026 17:37:49
Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Low)
CVE-2026-84356
- EPSS 0.14%
- Veröffentlicht 01.09.2026 23:42:30
- Zuletzt bearbeitet 03.09.2026 17:25:55
UI misrepresentation in FullScreen in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-84327
- EPSS 0.18%
- Veröffentlicht 01.09.2026 23:42:29
- Zuletzt bearbeitet 08.09.2026 17:56:03
Incorrect authorization in Autofill in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-84329
- EPSS 0.16%
- Veröffentlicht 01.09.2026 23:42:29
- Zuletzt bearbeitet 03.09.2026 17:11:25
Confused deputy in CredentialProvider in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-84334
- EPSS 0.08%
- Veröffentlicht 01.09.2026 23:42:29
- Zuletzt bearbeitet 03.09.2026 17:10:07
Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)
CVE-2026-84335
- EPSS 0.22%
- Veröffentlicht 01.09.2026 23:42:29
- Zuletzt bearbeitet 03.09.2026 17:09:46
Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HT...
CVE-2026-84348
- EPSS 0.18%
- Veröffentlicht 01.09.2026 23:42:29
- Zuletzt bearbeitet 03.09.2026 17:18:09
Information leak in MediaCapture in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to potentially leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-84323
- EPSS 0.16%
- Veröffentlicht 01.09.2026 23:42:28
- Zuletzt bearbeitet 03.09.2026 17:13:01
Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain sensitive information via a crafted HTML page. (Chromium securit...
CVE-2026-84330
- EPSS 0.15%
- Veröffentlicht 01.09.2026 23:42:28
- Zuletzt bearbeitet 08.09.2026 17:55:27
UI misrepresentation in FullScreen in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-84332
- EPSS 0.19%
- Veröffentlicht 01.09.2026 23:42:28
- Zuletzt bearbeitet 03.09.2026 17:10:22
Incorrect authorization in SiteSettings in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)