CVE-2026-79266
- EPSS 0.25%
- Veröffentlicht 25.08.2026 20:10:46
- Zuletzt bearbeitet 31.08.2026 18:12:23
Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)
CVE-2026-78963
- EPSS 0.44%
- Veröffentlicht 25.08.2026 20:10:45
- Zuletzt bearbeitet 27.08.2026 04:17:07
Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79004
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:45
- Zuletzt bearbeitet 31.08.2026 15:03:57
Out of bounds read in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79073
- EPSS 0.3%
- Veröffentlicht 25.08.2026 20:10:45
- Zuletzt bearbeitet 27.08.2026 04:17:20
Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79182
- EPSS 0.27%
- Veröffentlicht 25.08.2026 20:10:45
- Zuletzt bearbeitet 27.08.2026 13:14:33
Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79185
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:45
- Zuletzt bearbeitet 28.08.2026 14:36:35
Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78960
- EPSS 0.27%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 31.08.2026 13:40:35
Information leak in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Medium)
CVE-2026-78984
- EPSS 0.31%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 31.08.2026 15:04:10
Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79034
- EPSS 0.18%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 27.08.2026 00:49:52
Information leak in CORS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79075
- EPSS 0.27%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 31.08.2026 13:38:48
Information leak in Geolocation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)