CVE-2026-78897
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:49
- Zuletzt bearbeitet 27.08.2026 16:24:26
Missing authorization in BrowserTag in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Low)
CVE-2026-79089
- EPSS 0.18%
- Veröffentlicht 25.08.2026 20:10:49
- Zuletzt bearbeitet 31.08.2026 14:58:48
Race condition in Transactions Platform in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79119
- EPSS 0.28%
- Veröffentlicht 25.08.2026 20:10:49
- Zuletzt bearbeitet 27.08.2026 04:17:24
Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: Low)
CVE-2026-79190
- EPSS 0.19%
- Veröffentlicht 25.08.2026 20:10:49
- Zuletzt bearbeitet 28.08.2026 14:36:31
Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79206
- EPSS 0.17%
- Veröffentlicht 25.08.2026 20:10:49
- Zuletzt bearbeitet 31.08.2026 14:57:41
Out of bounds read in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-78950
- EPSS 0.56%
- Veröffentlicht 25.08.2026 20:10:48
- Zuletzt bearbeitet 27.08.2026 04:17:06
Integer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-78979
- EPSS 0.24%
- Veröffentlicht 25.08.2026 20:10:48
- Zuletzt bearbeitet 28.08.2026 14:12:24
Race condition in Core in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79000
- EPSS 0.28%
- Veröffentlicht 25.08.2026 20:10:48
- Zuletzt bearbeitet 28.08.2026 14:41:12
Improper input validation in DeviceBoundSessionCredentials in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: Low)
CVE-2026-79181
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:48
- Zuletzt bearbeitet 27.08.2026 17:51:21
Observable discrepancy in Glic in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)
CVE-2026-79196
- EPSS 0.18%
- Veröffentlicht 25.08.2026 20:10:48
- Zuletzt bearbeitet 26.08.2026 20:18:05
Race condition in Editing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)