Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
43999
Total
3569
Critical
13202
High
13005
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-78937 | CRITICAL | 9.6 | Use after free in Search in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary … | Aug 25, 2026 |
| CVE-2026-78936 | UNKNOWN | — | Observable discrepancy in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. … | Aug 25, 2026 |
| CVE-2026-78935 | CRITICAL | 9.6 | Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside … | Aug 25, 2026 |
| CVE-2026-78934 | UNKNOWN | — | Race condition in ReadAloud in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via … | Aug 25, 2026 |
| CVE-2026-78915 | HIGH | 7.5 | Race condition in Enterprise in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox … | Aug 25, 2026 |
| CVE-2026-78914 | UNKNOWN | — | Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML … | Aug 25, 2026 |
| CVE-2026-78913 | HIGH | 8.1 | Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted … | Aug 25, 2026 |
| CVE-2026-78912 | UNKNOWN | — | UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-78911 | UNKNOWN | — | Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to … | Aug 25, 2026 |
| CVE-2026-78910 | HIGH | 8.8 | Buffer overflow in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML … | Aug 25, 2026 |
| CVE-2026-78909 | CRITICAL | 9.6 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox … | Aug 25, 2026 |
| CVE-2026-78908 | UNKNOWN | — | Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium … | Aug 25, 2026 |
| CVE-2026-78907 | UNKNOWN | — | Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-78906 | HIGH | 7.5 | Race condition in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-78905 | HIGH | 8.8 | Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-78904 | UNKNOWN | — | Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-78903 | UNKNOWN | — | Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via … | Aug 25, 2026 |
| CVE-2026-78901 | HIGH | 7.5 | Race condition in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML … | Aug 25, 2026 |
| CVE-2026-78900 | UNKNOWN | — | Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a … | Aug 25, 2026 |
| CVE-2026-78899 | HIGH | 8.8 | Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-78898 | UNKNOWN | — | Incorrect authorization in Downloads in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted … | Aug 25, 2026 |
| CVE-2026-78897 | UNKNOWN | — | Missing authorization in BrowserTag in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome … | Aug 25, 2026 |
| CVE-2026-78896 | UNKNOWN | — | Information leak in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-78895 | UNKNOWN | — | Information leak in Paint in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium … | Aug 25, 2026 |
| CVE-2026-78894 | UNKNOWN | — | Race condition in Payments in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via … | Aug 25, 2026 |