Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

27385
Total
2080
Critical
8289
High
8496
Medium
CVE ID Severity Score Description Published
CVE-2026-11164 HIGH 8.8 Use after free in Blink in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Jun 04, 2026
CVE-2026-11163 CRITICAL 9.6 Use after free in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a … Jun 04, 2026
CVE-2026-11162 MEDIUM 4.3 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security … Jun 04, 2026
CVE-2026-11161 MEDIUM 4.3 Inappropriate implementation in DataTransfer in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security … Jun 04, 2026
CVE-2026-11160 MEDIUM 6.5 Out of bounds read in Input in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process … Jun 04, 2026
CVE-2026-11159 MEDIUM 4.3 Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security … Jun 04, 2026
CVE-2026-11158 HIGH 8.6 Insufficient validation of untrusted input in Downloads in Google Chrome on Mac prior to 149.0.7827.53 allowed a local attacker to potentially perform a sandbox escape … Jun 04, 2026
CVE-2026-11157 MEDIUM 5.4 Script injection in Accessibility in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary … Jun 04, 2026
CVE-2026-11156 MEDIUM 4.3 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security … Jun 04, 2026
CVE-2026-11155 MEDIUM 4.3 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security … Jun 04, 2026
CVE-2026-11154 HIGH 7.5 Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a … Jun 04, 2026
CVE-2026-11153 CRITICAL 9.1 Side-channel information leakage in Forms in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium … Jun 04, 2026
CVE-2026-11152 CRITICAL 9.6 Object lifecycle issue in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML … Jun 04, 2026
CVE-2026-11151 HIGH 7.5 Insufficient validation of untrusted input in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to … Jun 04, 2026
CVE-2026-11150 UNKNOWN Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML … Jun 04, 2026
CVE-2026-11149 HIGH 7.5 Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to perform … Jun 04, 2026
CVE-2026-11148 UNKNOWN Inappropriate implementation in Payments in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to leak cross-origin data via a crafted HTML page. … Jun 04, 2026
CVE-2026-11147 HIGH 8.8 Use after free in WebML in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via … Jun 04, 2026
CVE-2026-11146 UNKNOWN Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially … Jun 04, 2026
CVE-2026-11145 UNKNOWN Race in Geolocation in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium … Jun 04, 2026
CVE-2026-11144 UNKNOWN Use after free in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Jun 04, 2026
CVE-2026-11143 UNKNOWN Out of bounds read in Extensions in Google Chrome on Linux prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious … Jun 04, 2026
CVE-2026-11142 UNKNOWN Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. … Jun 04, 2026
CVE-2026-11141 UNKNOWN Uninitialized Use in Audio in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information … Jun 04, 2026
CVE-2026-11140 UNKNOWN Out of bounds read in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially … Jun 04, 2026