| CVE-2026-79020 | 8.1 | high | google / chrome | Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read m | 11d ago |
| CVE-2026-79011 | 8.1 | high | google / chrome | UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging socia | 11d ago |
| CVE-2026-78913 | 8.1 | high | google / chrome | Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially exec | 11d ago |
| CVE-2026-76019 | 8.1 | high | google / chrome | Incorrect authorization in Workers in Google Chrome prior to 151.0.7922.173 allowed a remote attacker who had comp | 16d ago |
| CVE-2026-19153 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote at | 30d ago |
| CVE-2026-17995 | 8.1 | high | google / chrome | Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of | 38d ago |
| CVE-2026-17869 | 8.1 | high | google / chrome | Out of bounds read in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of | 38d ago |
| CVE-2026-17686 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote a | 38d ago |
| CVE-2026-14122 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 al | 67d ago |
| CVE-2026-14111 | 8.1 | high | google / chrome | Use after free in WebProtect in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to i | 67d ago |
| CVE-2026-14090 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in CameraCapture in Google Chrome on ChromeOS prior to 150.0.7871.47 al | 67d ago |
| CVE-2026-14032 | 8.1 | high | google / chrome | Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed an attacker who convinced a use | 67d ago |
| CVE-2026-14011 | 8.1 | high | google / chrome | Out of bounds read in SurfaceCapture in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform | 67d ago |
| CVE-2026-13974 | 8.1 | high | google / chrome | Integer overflow in Safe Browsing in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to bypa | 67d ago |
| CVE-2026-13864 | 8.1 | high | google / chrome | Insufficient policy enforcement in WebHID in Google Chrome prior to 150.0.7871.47 allowed an attacker who convince | 67d ago |
| CVE-2026-13819 | 8.1 | high | google / chrome | Out of bounds read in ANGLE in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compr | 67d ago |
| CVE-2026-13806 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in Accessibility in Google Chrome prior to 150.0.7871.47 allowed a remo | 67d ago |
| CVE-2026-13799 | 8.1 | high | google / chrome | Use after free in QUIC in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit he | 67d ago |
| CVE-2026-13791 | 8.1 | high | google / chrome | Insufficient validation of untrusted input in Downloads in Google Chrome prior to 150.0.7871.47 allowed an attacke | 67d ago |
| CVE-2026-13787 | 8.1 | high | google / chrome | Use after free in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to execu | 67d ago |
| CVE-2026-13779 | 8.1 | high | google / chrome | Use after free in Chromoting in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to exec | 67d ago |
| CVE-2026-13774 | 8.1 | high | google / chrome | Use after free in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to i | 67d ago |
| CVE-2026-11719 | 8.1 | high | google / mcp toolbox for databases | An authenticated authorization bypass vulnerability exists in MCP Toolbox for Databases due to missing scope enfor | 79d ago |
| CVE-2026-12012 | 8.1 | high | google / chrome | Use after free in Network in Google Chrome prior to 149.0.7827.115 allowed an attacker in a privileged network pos | 86d ago |
| CVE-2026-11693 | 8.1 | high | google / chrome | Inappropriate implementation in Plugins in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had | 89d ago |
| CVE-2026-11689 | 8.1 | high | google / chrome | Insufficient policy enforcement in Passwords in Google Chrome prior to 149.0.7827.103 allowed a remote attacker wh | 89d ago |
| CVE-2026-11643 | 8.1 | high | google / chrome | Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary co | 89d ago |
| CVE-2026-11231 | 8.1 | high | google / chrome | Inappropriate implementation in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote atta | 93d ago |
| CVE-2026-11224 | 8.1 | high | google / chrome | Use after free in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute | 93d ago |
| CVE-2026-11185 | 8.1 | high | google / chrome | Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a | 93d ago |
| CVE-2026-11170 | 8.1 | high | google / chrome | Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attac | 93d ago |
| CVE-2026-11169 | 8.1 | high | google / chrome | Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject ar | 93d ago |
| CVE-2026-11111 | 8.1 | high | google / chrome | Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of | 93d ago |
| CVE-2026-11015 | 8.1 | high | google / chrome | Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out o | 93d ago |
| CVE-2026-11011 | 8.1 | high | google / chrome | Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attac | 93d ago |
| CVE-2026-10930 | 8.1 | high | google / chrome | Out of bounds read in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to perform an | 93d ago |
| CVE-2026-10887 | 8.1 | high | google / chrome | Use after free in Chromoting in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to execute a | 93d ago |
| CVE-2026-9964 | 8.1 | high | google / chrome | Use after free in Bluetooth in Google Chrome on Mac prior to 148.0.7778.216 allowed an attacker who convinced a use | 100d ago |
| CVE-2025-48640 | 8 | high | google / android | In multiple locations, there is a possible 3rd party passkey entry pairing approval due to a missing permission ch | 80d ago |
| CVE-2026-11241 | 8 | high | google / chrome | Insufficient validation of untrusted input in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on | 93d ago |
| CVE-2026-0097 | 8 | high | google / android | In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic | 96d ago |
| CVE-2026-0095 | 8 | high | google / android | In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privil | 96d ago |
| CVE-2026-0059 | 8 | high | google / android | In multiple functions of sdp_discovery.cc, there is a possible way to achieve code execution due to a heap buffer o | 96d ago |
| CVE-2026-17864 | 7.8 | high | google / chrome | Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to | 38d ago |
| CVE-2026-17863 | 7.8 | high | google / chrome | Inappropriate implementation in Browser in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacke | 38d ago |
| CVE-2026-17862 | 7.8 | high | google / chrome | Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform O | 38d ago |
| CVE-2026-17861 | 7.8 | high | google / chrome | Insufficient validation of untrusted input in Updater in Google Chrome prior to 151.0.7922.72 allowed a local atta | 38d ago |
| CVE-2026-17654 | 7.8 | high | google / chrome | Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privil | 38d ago |
| CVE-2026-16414 | 7.8 | high | google / chrome | Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local | 46d ago |
| CVE-2026-15905 | 7.8 | high | google / chrome | Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit he | 47d ago |
| CVE-2026-14124 | 7.8 | high | google / chrome | Inappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a lo | 67d ago |
| CVE-2026-14094 | 7.8 | high | google / chrome | Use after free in Installer in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform | 67d ago |
| CVE-2026-14060 | 7.8 | high | google / chrome | Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowe | 67d ago |
| CVE-2026-14018 | 7.8 | high | google / chrome | Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform O | 67d ago |
| CVE-2026-13927 | 7.8 | high | google / chrome | Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 150.0.7871.47 allowed a loca | 67d ago |
| CVE-2026-13863 | 7.8 | high | google / chrome | Insufficient validation of untrusted input in CustomTabs in Google Chrome on Android prior to 150.0.7871.47 allowe | 67d ago |
| CVE-2026-13844 | 7.8 | high | google / chrome | Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform O | 67d ago |
| CVE-2026-13827 | 7.8 | high | google / chrome | Use after free in Updater in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to perform privi | 67d ago |
| CVE-2026-13800 | 7.8 | high | google / chrome | Inappropriate implementation in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacke | 67d ago |
| CVE-2026-13778 | 7.8 | high | google / chrome | Use after free in WebUSB in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to execute arbitr | 67d ago |