CVE Database

132723+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-79267
4.3 MEDIUM

Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy …

Aug 25, 2026
CVE-2026-79266
8.8 HIGH

Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox …

Aug 25, 2026
CVE-2026-79265
5.3 MEDIUM

Incomplete cleanup in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to …

Aug 25, 2026
CVE-2026-79264
4.3 MEDIUM

Incorrect reference resolution in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. …

Aug 25, 2026
CVE-2026-79263
8.1 HIGH

Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network traffic. …

Aug 25, 2026
CVE-2026-79262
4.3 MEDIUM

Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79261
4.3 MEDIUM

Incorrect authorization in Controls in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79260
6.5 MEDIUM

Improper input validation in Cookies in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin …

Aug 25, 2026
CVE-2026-79259
4.3 MEDIUM

Improper input validation in Safebrowsing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium …

Aug 25, 2026
CVE-2026-79258
6.5 MEDIUM

Incorrect authorization in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted HTML …

Aug 25, 2026
CVE-2026-79257
9.6 CRITICAL

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79256
8.3 HIGH

Externally controlled reference in WebView in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79255
3.1 LOW

Improper input validation in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin …

Aug 25, 2026
CVE-2026-79254
4.3 MEDIUM

Incorrect reference resolution in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a …

Aug 25, 2026
CVE-2026-79253
6.5 MEDIUM

Improper input validation in Network in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to leak sensitive information …

Aug 25, 2026
CVE-2026-79252
4.3 MEDIUM

Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79251
4.3 MEDIUM

Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML …

Aug 25, 2026
CVE-2026-79250
5.4 MEDIUM

UI misrepresentation in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79249
6.5 MEDIUM

Code injection in Bisection in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted file. (Chromium security severity: …

Aug 25, 2026
CVE-2026-79248
4.3 MEDIUM

Incorrect authorization in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy …

Aug 25, 2026
CVE-2026-79247
8.3 HIGH

Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79246
6.5 MEDIUM

Information leak in DataTransfer in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79245
7.7 HIGH

Use after free in UI in Google Chrome prior to 152.0.7977.65 allowed a local attacker who had compromised the renderer process to execute arbitrary code …

Aug 25, 2026
CVE-2026-79244
8.8 HIGH

Use after free in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79243
6.5 MEDIUM

Improper input validation in ReadingList in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79242
5.3 MEDIUM

Observable discrepancy in HTML in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79241
6.5 MEDIUM

Out of bounds read in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox …

Aug 25, 2026
CVE-2026-79240
8.8 HIGH

Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside …

Aug 25, 2026
CVE-2026-79239
6.5 MEDIUM

Out of bounds read in Tint in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the …

Aug 25, 2026
CVE-2026-79238
4.3 MEDIUM

Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted …

Aug 25, 2026
CVE-2026-79237
4.3 MEDIUM

Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium …

Aug 25, 2026
CVE-2026-79236
8.8 HIGH

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-79235
9.6 CRITICAL

Use after free in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79234
6.5 MEDIUM

Injection in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain sensitive information via a crafted HTML page. (Chromium security …

Aug 25, 2026
CVE-2026-79233
4.3 MEDIUM

UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to spoof address bar via a crafted HTML …

Aug 25, 2026
CVE-2026-79232
9.6 CRITICAL

Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79231
8.8 HIGH

Buffer overflow in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-79230
8.8 HIGH

Improper input validation in ANGLE in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the …

Aug 25, 2026
CVE-2026-79229
6.5 MEDIUM

Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory outside the …

Aug 25, 2026
CVE-2026-79228
3.1 LOW

Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation into …

Aug 25, 2026
CVE-2026-79227
8.8 HIGH

Type confusion in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via …

Aug 25, 2026
CVE-2026-79226
8.8 HIGH

Improper privilege management in Regional Capabilities in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via …

Aug 25, 2026
CVE-2026-79225
4.3 MEDIUM

Incorrect authorization in Browser in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions …

Aug 25, 2026
CVE-2026-79224
8.3 HIGH

Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code …

Aug 25, 2026
CVE-2026-79223
8.8 HIGH

Integer overflow in Chromium in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory inside the sandbox via a crafted file. (Chromium …

Aug 25, 2026
CVE-2026-79222
4.3 MEDIUM

Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed …

Aug 25, 2026
CVE-2026-79221
6.5 MEDIUM

Uninitialized resource in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-79220
5.3 MEDIUM

Information leak in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via …

Aug 25, 2026
CVE-2026-79219
8.8 HIGH

Use after free in Bluetooth in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79218
8.3 HIGH

Incorrect authorization in Sandbox in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code …

Aug 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.