Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
42028
Total
3422
Critical
12413
High
12340
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-84425 | MEDIUM | 4.3 | A vulnerability was found in zhayujie CowAgent up to 2.1.3. This impacts the function BrowserTool of the file agent/tools/browser/browser_tool.py of the component Browser Tool. Performing … | Sep 02, 2026 |
| CVE-2026-84359 | LOW | 3.1 | Information leak in Skia in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via … | Sep 02, 2026 |
| CVE-2026-84358 | MEDIUM | 4.2 | Improper privilege management in Downloads in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to spoof address bar … | Sep 02, 2026 |
| CVE-2026-84357 | MEDIUM | 6.5 | Improper input validation in Omnibox in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted … | Sep 02, 2026 |
| CVE-2026-84356 | MEDIUM | 4.3 | UI misrepresentation in FullScreen in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security … | Sep 02, 2026 |
| CVE-2026-84355 | LOW | 3.1 | Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … | Sep 02, 2026 |
| CVE-2026-84354 | CRITICAL | 9.6 | Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via … | Sep 02, 2026 |
| CVE-2026-84353 | CRITICAL | 9.6 | Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute … | Sep 02, 2026 |
| CVE-2026-84352 | CRITICAL | 9.6 | Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox … | Sep 02, 2026 |
| CVE-2026-84351 | HIGH | 8.3 | Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute … | Sep 02, 2026 |
| CVE-2026-84350 | HIGH | 8.8 | Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox … | Sep 02, 2026 |
| CVE-2026-84349 | HIGH | 8.3 | Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code … | Sep 02, 2026 |
| CVE-2026-84348 | MEDIUM | 6.5 | Information leak in MediaCapture in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to potentially leak sensitive information via a crafted HTML page. (Chromium … | Sep 02, 2026 |
| CVE-2026-84347 | HIGH | 8.8 | Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted … | Sep 02, 2026 |
| CVE-2026-84335 | HIGH | 8.3 | Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to … | Sep 02, 2026 |
| CVE-2026-84334 | HIGH | 8.1 | Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sandbox via … | Sep 02, 2026 |
| CVE-2026-84333 | CRITICAL | 9.6 | Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox … | Sep 02, 2026 |
| CVE-2026-84332 | MEDIUM | 6.5 | Incorrect authorization in SiteSettings in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium … | Sep 02, 2026 |
| CVE-2026-84331 | LOW | 3.1 | Incorrect authorization in Actor in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … | Sep 02, 2026 |
| CVE-2026-84330 | MEDIUM | 5.4 | UI misrepresentation in FullScreen in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to spoof address bar via a crafted HTML … | Sep 02, 2026 |
| CVE-2026-84329 | MEDIUM | 5.3 | Confused deputy in CredentialProvider in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to leak … | Sep 02, 2026 |
| CVE-2026-84328 | LOW | 3.1 | Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to bypass web origin policy … | Sep 02, 2026 |
| CVE-2026-84327 | MEDIUM | 6.5 | Incorrect authorization in Autofill in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to obtain sensitive information via … | Sep 02, 2026 |
| CVE-2026-84326 | HIGH | 8.8 | Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML … | Sep 02, 2026 |
| CVE-2026-84325 | CRITICAL | 9.8 | Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a … | Sep 02, 2026 |