3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79127 — Out: of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79127

Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 787TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79121 — Chromecast: Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79121

Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 8.3 (HIGH)

CWECWE 20VNDChromecastTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79119 — Use: after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79119

Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: Low) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79111 — Dawn: Improper input validation in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79111

Improper input validation in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 20VNDDawnTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79109 — Printing: Improper input validation in Printing in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79109

Improper input validation in Printing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 20VNDPrintingTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79097 — Use: after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79097

Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79091 — Use: after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79091

Use after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
728 × 90 / responsive · programmatic ad slot
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79090 — Actor: Improper privilege management in Actor in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79090

Improper privilege management in Actor in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 9.8 (CRITICAL)

CWECWE 269VNDActorTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79078 — Use: after free in FedCM in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79078

Use after free in FedCM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79073 — Parser: Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79073

Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 754VNDParserTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79072 — Performance: Improper state validation in Performance in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79072

Improper state validation in Performance in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.1 (HIGH) · EPSS 13th percentile

CWECWE 754VNDPerformanceTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79071 — Race: condition in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79071

Race condition in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 367VNDRaceTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79069 — Memory: corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79069

Memory corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 119TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79064 — Use: after free in Network in Google Chrome on on Mac prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79064

Use after free in Network in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79058 — Passwords: Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79058

Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 9.1 (CRITICAL) · EPSS 14th percentile

CWECWE 862TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79057 — Race: condition in Start in Google Chrome on on Android prior to 152.0.7977.65 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79057

Race condition in Start in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a co-installed app. (Chromium security severity: Medium) CVSSv3.1 8.1 (HIGH)

CWECWE 367VNDRaceTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79056 — Use: after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79056

Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79054 — Use: after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79054

Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79052 — Use: after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79052

Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79048 — Out: of bounds write in ANGLE in Google Chrome on on Windows prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79048

Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 787TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79047 — Use: after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79047

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:18Z
HIGH

CVE-2026-79045 — Type: confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79045

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 8.8 (HIGH)

CWECWE 843VNDTypeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:18Z
CRIT

CVE-2026-79043 — Out: of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79043

Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 787TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79039 — Use: after free in Mobile in Google Chrome on on iOS prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79039

Use after free in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High) CVSSv3.1 8.1 (HIGH)

CWECWE 416TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79033 — DevTools: Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79033

Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 691VNDDevtoolsTYPVulnerability
8.8
CVSS v3.1
94
Edit Score