| CVE-2026-11242 | 7.5 | high | google / chrome | Insufficient validation of untrusted input in Plugins in Google Chrome prior to 149.0.7827.53 allowed a remote att | 93d ago |
| CVE-2026-11239 | 7.5 | high | google / chrome | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who h | 93d ago |
| CVE-2026-11154 | 7.5 | high | google / chrome | Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the r | 93d ago |
| CVE-2026-11151 | 7.5 | high | google / chrome | Insufficient validation of untrusted input in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a r | 93d ago |
| CVE-2026-11149 | 7.5 | high | google / chrome | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote | 93d ago |
| CVE-2026-11058 | 7.5 | high | google / chrome | Integer overflow in CredentialProvider in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacke | 93d ago |
| CVE-2026-10969 | 7.5 | high | google / chrome | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote | 93d ago |
| CVE-2026-10946 | 7.5 | high | google / chrome | Heap buffer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a us | 93d ago |
| CVE-2026-10906 | 7.5 | high | google / chrome | Use after free in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convince | 93d ago |
| CVE-2026-10901 | 7.5 | high | google / chrome | Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced | 93d ago |
| CVE-2026-10900 | 7.5 | high | google / chrome | Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced | 93d ago |
| CVE-2026-10899 | 7.5 | high | google / chrome | Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who convinced a | 93d ago |
| CVE-2026-9990 | 7.5 | high | google / chrome | Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who conv | 100d ago |
| CVE-2026-9963 | 7.5 | high | google / chrome | Uninitialized Use in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a | 100d ago |
| CVE-2026-9960 | 7.5 | high | google / chrome | Integer overflow in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised t | 100d ago |
| CVE-2026-9956 | 7.5 | high | google / chrome | Use after free in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a use | 100d ago |
| CVE-2026-9954 | 7.5 | high | google / chrome | Use after free in TabStrip in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convinced a user | 100d ago |
| CVE-2026-9934 | 7.5 | high | google / chrome | Use after free in Aura in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convinced a user to e | 100d ago |
| CVE-2026-9933 | 7.5 | high | google / chrome | Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convinced a user to | 100d ago |
| CVE-2026-9922 | 7.5 | high | google / chrome | Use after free in GPU in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised | 100d ago |
| CVE-2026-9909 | 7.5 | high | google / chrome | Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the | 100d ago |
| CVE-2026-9901 | 7.5 | high | google / chrome | Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the | 100d ago |
| CVE-2026-10022 | 7.5 | high | google / chrome | Type Confusion in V8 in Google Chrome prior to 148.0.7778.216 allowed an attacker who convinced a user to install | 100d ago |
| CVE-2026-10009 | 7.5 | high | google / chrome | Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised th | 100d ago |
| CVE-2026-10006 | 7.5 | high | google / chrome | Race in WebAudio in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code insi | 100d ago |
| CVE-2026-10005 | 7.5 | high | google / chrome | Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who con | 100d ago |
| CVE-2026-10003 | 7.5 | high | google / chrome | Use after free in Views in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convinced a user to | 100d ago |
| CVE-2026-9123 | 7.5 | high | google / chrome | Heap buffer overflow in Chromecast in Google Chrome on Android, Linux, ChromeOS prior to 148.0.7778.179 allowed a l | 108d ago |
| CVE-2026-9117 | 7.5 | high | google / chrome | Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote attacker who had | 108d ago |
| CVE-2026-8585 | 7.5 | high | google / chrome | Inappropriate implementation in Media in Google Chrome on iOS prior to 148.0.7778.168 allowed a remote attacker who | 114d ago |
| CVE-2026-8557 | 7.5 | high | google / chrome | Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromi | 114d ago |
| CVE-2026-8547 | 7.5 | high | google / chrome | Insufficient policy enforcement in Passwords in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote a | 114d ago |
| CVE-2026-8521 | 7.5 | high | google / chrome | Use after free in Tab Groups in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrar | 114d ago |
| CVE-2026-8510 | 7.5 | high | google / chrome | Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had comp | 114d ago |
| CVE-2026-3932 | 7.5 | high | google / chrome | Insufficient policy enforcement in PDF in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker | 178d ago |
| CVE-2026-3924 | 7.5 | high | google / chrome | use after free in WindowDialog in Google Chrome prior to 146.0.7680.71 allowed a remote attacker who had compromise | 178d ago |
| CVE-2026-79286 | 7.4 | high | google / chrome | Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker | 11d ago |
| CVE-2026-19139 | 7.4 | high | google / chrome | Race in CredentialProvider in Google Chrome on Windows prior to 151.0.7922.109 allowed a local attacker to perform | 30d ago |
| CVE-2026-10976 | 7.4 | high | google / chrome | Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially | 93d ago |
| CVE-2026-10973 | 7.4 | high | google / chrome | Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin d | 93d ago |
| CVE-2026-10968 | 7.4 | high | google / chrome | Insufficient validation of untrusted input in Dawn in Google Chrome on Windows prior to 149.0.7827.53 allowed a re | 93d ago |
| CVE-2026-0131 | 7.3 | high | google / android | In RtpPacket::decodePacket, there is a possible out of bounds access due to an integer overflow. | 81d ago |
| CVE-2026-11115 | 7.3 | high | google / chrome | Use after free in Updater in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform O | 93d ago |
| CVE-2026-11035 | 7.3 | high | google / chrome | Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 149.0.7827.53 allowed a local att | 93d ago |
| CVE-2026-78892 | 7.1 | high | google / chrome | Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a local attack | 11d ago |
| CVE-2026-17888 | 7.1 | high | google / chrome | Insufficient validation of untrusted input in WebUI in Google Chrome prior to 151.0.7922.72 allowed a remote attac | 38d ago |
| CVE-2026-17867 | 7.1 | high | google / chrome | Insufficient validation of untrusted input in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attack | 38d ago |
| CVE-2026-17811 | 7.1 | high | google / chrome | Use after free in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to potentiall | 38d ago |
| CVE-2026-17750 | 7.1 | high | google / chrome | Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a | 38d ago |
| CVE-2026-17744 | 7.1 | high | google / chrome | Inappropriate implementation in File Input in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attac | 38d ago |
| CVE-2026-17741 | 7.1 | high | google / chrome | Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a | 38d ago |
| CVE-2026-11269 | 7.1 | high | google / chrome | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker in a privil | 93d ago |
| CVE-2026-17993 | 7 | high | google / chrome | Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege e | 38d ago |
| CVE-2026-0083 | 7 | high | google / android | In Nfc::eventCallback() of Nfc.h, there is a possible use after free due to a race condition. | 80d ago |
| CVE-2026-0125 | 7 | high | google / android | In multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. | 81d ago |
| CVE-2026-3937 | 6.5 | medium | google / chrome | Incorrect security UI in Downloads in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attacker to | 178d ago |
| CVE-2026-3935 | 6.5 | medium | google / chrome | Incorrect security UI in WebAppInstalls in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perfor | 178d ago |
| CVE-2026-3934 | 6.5 | medium | google / chrome | Insufficient policy enforcement in ChromeDriver in Google Chrome prior to 146.0.7680.71 allowed a remote attacker t | 178d ago |
| CVE-2026-3940 | 5.3 | medium | google / chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to by | 178d ago |
| CVE-2026-3939 | 5.3 | medium | google / chrome | Insufficient policy enforcement in PDF in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to bypass | 178d ago |