Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.3 HIGH
CVE-2026-8070 — ASUS Armoury Crate Local Privilege Escalation

Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, resulting in unauthorized read and write access to physical m…

armoury_crate | Authorization
May 29, 2026 May 29, 2026
May 29, 2026
May 29, 2026
7.3 HIGH
CVE-2026-7480 — ASUS System Control Interface Privilege Escalation Remote Code Execution Vulnerability

An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interface allows a local user to elevate privileges to SYSTEM and execute arbitrary code via a crafted RP…

system_control_interface | Authorization
May 29, 2026 May 29, 2026
May 29, 2026
May 29, 2026
5.1 MEDIUM
CVE-2026-6892 — Canon CUPS Printer Driver for macOS Symbolic Link Privilege Escalation

Improper handling of symbolic links in the installer of CUPS Printer Driver for macOS(*) may allow a local attacker with login privileges to exploit a specially crafted symbolic link during installat…

| Authorization
May 29, 2026 May 29, 2026
May 29, 2026
May 29, 2026
5.1 MEDIUM
CVE-2026-6891 — My Image Garden Local File Permission Manipulation Vulnerability

Improper handling of symbolic links in the installer of My Image Garden for macOS Version 3.6.8 or earlier may allow a local attacker with login privileges to exploit a specially crafted symbolic lin…

| Path Traversal
May 29, 2026 May 29, 2026
May 29, 2026
May 29, 2026
8.8 HIGH
CVE-2026-9999 — Google Chrome ANGLE Arbitrary Code Execution Vulnerability

Inappropriate implementation in ANGLE in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security …

chrome macos edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.3 HIGH
CVE-2026-9998 — Google Chrome Skia Integer Overflow Sandbox Escape

Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9997 — Google Chrome Use After Free in Renderer Process

Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (C…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
6.5 MEDIUM
CVE-2026-9996 — Google Chrome WebRTC Out-of-Bounds Read

Out of bounds read in WebRTC in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromi…

chrome macos edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9995 — Google Chrome WebXR Use-After-Free Arbitrary Code Execution Vulnerability

Use after free in WebXR in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9994 — Google Chrome Core Use-After-Free Vulnerability

Use after free in Core in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTM…

chrome windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9993 — Google Chrome Use After Free Vulnerability in Views

Use after free in Views in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted PDF file. (Ch…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.8 HIGH
CVE-2026-9992 — Google Chrome Use After Free in Network

Use after free in Network in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
3.1 LOW
CVE-2026-9991 — Google Chrome Cross-Origin Data Leak

Inappropriate implementation in Media in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HT…

chrome windows edge_chromium | Remote | Information Disclosure
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
7.5 HIGH
CVE-2026-9990 — Google Chrome WebAppInstalls Use-After-Free Vulnerability

Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruptio…

chrome macos edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
6.3 MEDIUM
CVE-2026-9989 — Google Chrome Media Same-Origin Policy Bypass

Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to bypass same origin policy via a crafted video file. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Misconfiguration
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.3 HIGH
CVE-2026-9988 — Google Chrome WebRTC Use-After-Free Sandbox Escape

Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
7.8 HIGH
CVE-2026-9987 — Google Chrome Android WebAppInstalls Code Execution Vulnerability

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 148.0.7778.216 allowed a local attacker to execute arbitrary code via a malicious file. (Chromium sec…

android chrome | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
4.2 MEDIUM
CVE-2026-9986 — Google Chrome UI Spoofing Vulnerability

Insufficient validation of untrusted input in OptimizationGuide in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via …

linux_kernel chrome macos windows edge_chromium | Remote | Misconfiguration
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
5.3 MEDIUM
CVE-2026-9985 — Google Chrome ChromeOS Renderer Process Information Disclosure

Insufficient validation of untrusted input in Media in Google Chrome on ChromeOS prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to obtain potentially sensi…

chrome chrome_os edge_chromium | Remote | Information Disclosure
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9984 — Google Chrome UI Use-After-Free Vulnerability

Use after free in UI in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

chrome windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
Showing 20 of 7214 Results