Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2026-11081 — Google Chrome Canvas Same Origin Policy Bypass

Inappropriate implementation in Canvas in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Misconfiguration
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11080 — Google Chrome Android Use-After-Free

Use after free in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Med…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11079 — Google Chrome Codec Out-of-Bounds Write

Insufficient validation of untrusted input in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory write via a crafted video file. (Chromium sec…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11078 — Google Chrome FileSystem Same Origin Policy Bypass

Inappropriate implementation in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML p…

chrome chrome | Remote | Authorization
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11077 — Google Chrome Sandbox Arbitrary Code Execution

Bad cast in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11076 — Google Chrome Type Confusion Vulnerability

Type Confusion in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11075 — Google Chrome Out-of-Bounds Read

Out of bounds read in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security …

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11074 — Google Chrome WebRTC Use-After-Free

Use after free in WebRTC in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11073 — Google Chrome WebGL Use After Free

Use after free in WebGL in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security s…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
7.8 HIGH
CVE-2026-11072 — Google Chrome Android Use-After-Free

Use after free in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to execute arbitrary code via a malicious file. (Chromium security severity: Medium)

chrome chrome | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11071 — Google Chrome Use-After-Free

Use after free in Base in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process mem…

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
9.6 CRITICAL
CVE-2026-11070 — Google Chrome Chromoting Sandbox Escape

Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the network process to potentially perform a …

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11069 — Google Chrome Same Origin Policy Bypass

Insufficient validation of untrusted input in Cast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity:…

chrome chrome | Remote | Misconfiguration
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
8.8 HIGH
CVE-2026-11068 — Google Chrome Use-after-free in WebSockets

Use after free in WebSockets in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
6.5 MEDIUM
CVE-2026-11067 — Google Chrome Use After Free

Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security…

chrome chrome | Remote | Information Disclosure
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11066 — ANGLE Sandbox Escape

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium securi…

chrome chrome | Injection
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11065 — ANGLE Use-after-free Sandbox Escape

Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Ch…

chrome chrome | Memory Corruption
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11064 — Google Chrome GPU Race Condition Information Disclosure

Race in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security…

chrome chrome | Race Condition
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11063 — Chrome WebNN Sandbox Escape

Insufficient validation of untrusted input in WebNN in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sand…

chrome chrome | Injection
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
0.0 NA
CVE-2026-11062 — Google Chrome Extension Script Injection

Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to inject scripts or HTML into a privil…

chrome chrome | Injection
Jun 04, 2026 Jun 05, 2026
Jun 04, 2026
Jun 05, 2026
Showing 20 of 7316 Results