Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

42028
Total
3422
Critical
12413
High
12340
Medium
CVE ID Severity Score Description Published
CVE-2026-84425 MEDIUM 4.3 A vulnerability was found in zhayujie CowAgent up to 2.1.3. This impacts the function BrowserTool of the file agent/tools/browser/browser_tool.py of the component Browser Tool. Performing … Sep 02, 2026
CVE-2026-84359 LOW 3.1 Information leak in Skia in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via … Sep 02, 2026
CVE-2026-84358 MEDIUM 4.2 Improper privilege management in Downloads in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to spoof address bar … Sep 02, 2026
CVE-2026-84357 MEDIUM 6.5 Improper input validation in Omnibox in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted … Sep 02, 2026
CVE-2026-84356 MEDIUM 4.3 UI misrepresentation in FullScreen in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security … Sep 02, 2026
CVE-2026-84355 LOW 3.1 Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … Sep 02, 2026
CVE-2026-84354 CRITICAL 9.6 Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via … Sep 02, 2026
CVE-2026-84353 CRITICAL 9.6 Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute … Sep 02, 2026
CVE-2026-84352 CRITICAL 9.6 Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox … Sep 02, 2026
CVE-2026-84351 HIGH 8.3 Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute … Sep 02, 2026
CVE-2026-84350 HIGH 8.8 Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox … Sep 02, 2026
CVE-2026-84349 HIGH 8.3 Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code … Sep 02, 2026
CVE-2026-84348 MEDIUM 6.5 Information leak in MediaCapture in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to potentially leak sensitive information via a crafted HTML page. (Chromium … Sep 02, 2026
CVE-2026-84347 HIGH 8.8 Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted … Sep 02, 2026
CVE-2026-84335 HIGH 8.3 Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to … Sep 02, 2026
CVE-2026-84334 HIGH 8.1 Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sandbox via … Sep 02, 2026
CVE-2026-84333 CRITICAL 9.6 Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox … Sep 02, 2026
CVE-2026-84332 MEDIUM 6.5 Incorrect authorization in SiteSettings in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium … Sep 02, 2026
CVE-2026-84331 LOW 3.1 Incorrect authorization in Actor in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … Sep 02, 2026
CVE-2026-84330 MEDIUM 5.4 UI misrepresentation in FullScreen in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML … Sep 02, 2026
CVE-2026-84329 MEDIUM 5.3 Confused deputy in CredentialProvider in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak … Sep 02, 2026
CVE-2026-84328 LOW 3.1 Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … Sep 02, 2026
CVE-2026-84327 MEDIUM 6.5 Incorrect authorization in Autofill in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to obtain sensitive information via … Sep 02, 2026
CVE-2026-84326 HIGH 8.8 Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML … Sep 02, 2026
CVE-2026-84325 CRITICAL 9.8 Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a … Sep 02, 2026