CVE-2026-79139
- EPSS 0.33%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 27.08.2026 13:13:56
Improper input validation in Media in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s...
CVE-2026-79221
- EPSS 0.19%
- Veröffentlicht 25.08.2026 20:10:44
- Zuletzt bearbeitet 31.08.2026 14:11:13
Uninitialized resource in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78901
- EPSS 0.25%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 27.08.2026 04:16:51
Race condition in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79033
- EPSS 0.3%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 27.08.2026 04:17:12
Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security seve...
CVE-2026-79097
- EPSS 0.3%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 27.08.2026 04:17:23
Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79203
- EPSS 0.22%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 28.08.2026 14:36:00
Improper input validation in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79227
- EPSS 0.29%
- Veröffentlicht 25.08.2026 20:10:43
- Zuletzt bearbeitet 31.08.2026 18:22:32
Type confusion in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-78913
- EPSS 0.31%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 27.08.2026 04:16:52
Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)
CVE-2026-78962
- EPSS 0.27%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 27.08.2026 17:33:30
Uninitialized resource in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-79211
- EPSS 0.21%
- Veröffentlicht 25.08.2026 20:10:42
- Zuletzt bearbeitet 31.08.2026 14:15:36
Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)