Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.3 MEDIUM
CVE-2026-9989 — Google Chrome Media Same-Origin Policy Bypass

Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to bypass same origin policy via a crafted video file. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Misconfiguration
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.3 HIGH
CVE-2026-9988 — Google Chrome WebRTC Use-After-Free Sandbox Escape

Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
7.8 HIGH
CVE-2026-9987 — Google Chrome Android WebAppInstalls Code Execution Vulnerability

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 148.0.7778.216 allowed a local attacker to execute arbitrary code via a malicious file. (Chromium sec…

android chrome | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
4.2 MEDIUM
CVE-2026-9986 — Google Chrome UI Spoofing Vulnerability

Insufficient validation of untrusted input in OptimizationGuide in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via …

linux_kernel chrome macos windows edge_chromium | Remote | Misconfiguration
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
5.3 MEDIUM
CVE-2026-9985 — Google Chrome ChromeOS Renderer Process Information Disclosure

Insufficient validation of untrusted input in Media in Google Chrome on ChromeOS prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to obtain potentially sensi…

chrome chrome_os edge_chromium | Remote | Information Disclosure
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9984 — Google Chrome UI Use-After-Free Vulnerability

Use after free in UI in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

chrome windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.8 HIGH
CVE-2026-9983 — Google Chrome Skia Type Confusion Arbitrary Code Execution

Type Confusion in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9982 — Google Chrome ANGLE Sandbox Escape Vulnerability

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
6.5 MEDIUM
CVE-2026-9981 — Google Chrome Skia Memory Information Disclosure

Inappropriate implementation in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chrom…

linux_kernel chrome macos windows edge_chromium | Remote | Information Disclosure
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
5.0 MEDIUM
CVE-2026-9980 — Google Chrome Printing HTML Injection Vulnerability

Insufficient validation of untrusted input in Printing in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a craft…

linux_kernel chrome macos windows edge_chromium | Remote | Information Disclosure
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
5.0 MEDIUM
CVE-2026-9979 — Google Chrome HTML Injection

Insufficient validation of untrusted input in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted …

linux_kernel chrome macos windows edge_chromium | Remote | Misconfiguration
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9978 — Google Chrome Glic Use After Free Arbitrary Code Execution

Use after free in Glic in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9977 — Google Chrome Android WebShare HTML Injection

Insufficient validation of untrusted input in WebShare in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a …

android chrome edge_chromium | Remote | Path Traversal
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9976 — Google Chrome USB Unvalidated Input Code Execution Vulnerability

Inappropriate implementation in USB in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9975 — Google Chrome ANGLE Out-of-Bounds Write Vulnerability

Out of bounds read and write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.3 HIGH
CVE-2026-9974 — Google Chrome GPU Out-of-Bounds Write Sanbox Escape

Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-9973 — Google Chrome V8 Out-of-Bounds Code Execution Vulnerability

Out of bounds write in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 May 29, 2026
May 28, 2026
May 29, 2026
8.3 HIGH
CVE-2026-9972 — Google Chrome Mac Gamepad Uninitialized Use Remote Code Execution

Uninitialized Use in Gamepad in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted H…

chrome macos edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
5.4 MEDIUM
CVE-2026-9971 — Google Chrome on iOS UXSS Vulnerability

Inappropriate implementation in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to inject arbitrary scripts or HTM…

chrome iphone_os edge_chromium | Remote | Cross-Site Scripting
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
8.3 HIGH
CVE-2026-9970 — Google Chrome WebGL Use-After-Free Sandbox Escape

Use after free in WebGL in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (C…

linux_kernel chrome macos windows edge_chromium | Remote | Memory Corruption
May 28, 2026 Jun 01, 2026
May 28, 2026
Jun 01, 2026
Showing 20 of 7198 Results