Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.1 HIGH
CVE-2026-11218 — Google Chrome Remote Code Execution

Inappropriate implementation in PlatformIntegration in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbi…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11217 — Google Chrome Fenced Frames Site Isolation Bypass

Inappropriate implementation in Fenced Frames in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML pa…

chrome chrome | Remote | Misconfiguration
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
4.3 MEDIUM
CVE-2026-11216 — Google Chrome UI Spoofing

Incorrect security UI in File Input in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML …

chrome chrome | Remote | Misconfiguration
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11215 — Google Chrome Cronet Domain Spoofing

Inappropriate implementation in Cronet in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform domain spoofing via a crafted domain name. (Chromium security severity: …

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11214 — Google Chrome for iOS Cross-Origin Data Leak

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity:…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
9.6 CRITICAL
CVE-2026-11213 — Google Chrome Reading Mode Sandbox Escape

Insufficient validation of untrusted input in Reading Mode in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox …

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
4.3 MEDIUM
CVE-2026-11212 — Google Chrome DevTools Cross-Origin Data Leak

Insufficient policy enforcement in DevTools in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted C…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11211 — Google Chrome V8 Integer Overflow Remote Code Execution

Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11210 — Google Chrome Safe Browsing RAR File Access Control Bypass

Inappropriate implementation in Safe Browsing in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass discretionary access control via a crafted RAR file. (Chromium security sever…

chrome chrome | Remote | Authorization
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11209 — Google Chrome Information Disclosure

Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from p…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11208 — Google Chrome Use-After-Free Memory Disclosure

Use after free in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security …

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
9.6 CRITICAL
CVE-2026-11207 — Google Chrome Autofill Sandbox Escape

Insufficient validation of untrusted input in Autofill in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via malicious network traffic. (Chromi…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11206 — Google Chrome ServiceWorker Cross-Origin Data Leak

Insufficient policy enforcement in ServiceWorker in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medi…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.1 MEDIUM
CVE-2026-11205 — Google Chrome for iOS UXSS via Crafted QR Code

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to inject …

chrome chrome | Remote | Cross-Site Scripting
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11204 — Google Chrome iOS: Navigation Restriction Bypass

Inappropriate implementation in Signin in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity:…

chrome chrome | Remote | Authentication
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11203 — Google Chrome GPU Information Disclosure

Inappropriate implementation in GPU in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11202 — Google Chrome iOS Sandbox Escape

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium secu…

chrome chrome | Remote | Misconfiguration
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11201 — Google Chrome Use-After-Free in ServiceWorker

Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extens…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11200 — Google Chrome WebRTC Cross-Origin Data Leak

Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
5.7 MEDIUM
CVE-2026-11199 — Google Chrome WebRTC Cross-Origin Data Leak

Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.53 allowed an attacker in a privileged network position to leak cross-origin data via malicious network traffic. (Chromium …

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
Showing 20 of 7365 Results