Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-54772 — CoreWCF: Pre-authentication infinite-loop CPU exhaustion in CoreWCF net.tcp / net.pipe / …

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, an unauthenticated remote attacker that can reach a NetTcpBinding, NetNamedPipe…

corewcf | Remote | Denial of Service
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
7.5 HIGH
CVE-2026-54499 — Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders

Stanza is a Stanford NLP Python library for tokenization, sentence segmentation, NER, and parsing of many human languages. Prior to 1.12.2, Stanza model loaders such as stanza.models.common.pretrain.…

stanza | Remote | Supply Chain
Jul 08, 2026 Jul 13, 2026
Jul 08, 2026
Jul 13, 2026
8.8 HIGH
CVE-2026-15133 — Google Chrome InterestGroups Use After Free Vulnerability

Use after free in InterestGroups in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Hi…

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.8 HIGH
CVE-2026-15132 — Google Chrome Uninitialized Use Vulnerability

Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
4.3 MEDIUM
CVE-2026-15131 — Google Chrome Navigation Site Isolation Bypass

Inappropriate implementation in Navigation in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)

chrome chrome | Remote | Misconfiguration
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
4.3 MEDIUM
CVE-2026-15130 — Google Chrome Navigation Site Isolation Bypass

Insufficient policy enforcement in Navigation in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Misconfiguration
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
8.8 HIGH
CVE-2026-15129 — Google Chrome Views Use-After-Free Vulnerability

Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
6.1 MEDIUM
CVE-2026-15128 — Google Chrome Forms Universal Cross-Site Scripting

Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severit…

chrome chrome | Remote | Cross-Site Scripting
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
6.1 MEDIUM
CVE-2026-15127 — Google Chrome WebGL Universal Cross-Site Scripting

Inappropriate implementation in WebGL in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severit…

chrome chrome | Remote | Cross-Site Scripting
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
8.8 HIGH
CVE-2026-15126 — Google Chrome Forms Use-After-Free Vulnerability

Use after free in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.8 HIGH
CVE-2026-15125 — Google Chrome Forms Arbitrary Code Execution

Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severit…

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
4.3 MEDIUM
CVE-2026-15124 — Google Chrome Same Origin Policy Bypass Vulnerability

Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Misconfiguration
Jul 08, 2026 Jul 09, 2026
Jul 08, 2026
Jul 09, 2026
8.8 HIGH
CVE-2026-15123 — Google Chrome DOM Heap Corruption

Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Hig…

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.3 HIGH
CVE-2026-15122 — Google Chrome Codecs Sandbox Escape Vulnerability

Insufficient validation of untrusted input in Codecs in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sa…

chrome chrome windows | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.8 HIGH
CVE-2026-15121 — Google Chrome WebRTC Use-After-Free Vulnerability

Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.3 HIGH
CVE-2026-15120 — Google Chrome Core Use-After-Free Sandbox Escape

Use after free in Core in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTM…

chrome chrome windows | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.3 HIGH
CVE-2026-15119 — Google Chrome GetUserMedia Race Condition Sandbox Escape

Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chro…

chrome chrome | Remote | Race Condition
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.8 HIGH
CVE-2026-15118 — Google Chrome Input Use-After-Free Vulnerability

Use after free in Input in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
7.5 HIGH
CVE-2026-15117 — Google Chrome Payments Use After Free Vulnerability

Use after free in Payments in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a craft…

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
8.8 HIGH
CVE-2026-15116 — Google Chrome Actor Use After Free

Use after free in Actor in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

chrome chrome | Remote | Memory Corruption
Jul 08, 2026 Jul 10, 2026
Jul 08, 2026
Jul 10, 2026
Showing 20 of 9488 Results