4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10941 — Out: of bounds memory access in Skia in Google Chrome prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10941

Out of bounds memory access in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 125CWECWE 787TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10940 — Race: in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10940

Race in Codecs in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 362VNDRaceTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10939 — Use: after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10939

Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10936 — Type: Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10936

Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 843VNDTypeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10935 — Type: Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10935

Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 843VNDTypeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10934 — Use: after free in Autofill in Google Chrome on Android prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10934

Use after free in Autofill in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10933 — Use: after free in Audio in Google Chrome on Windows prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10933

Use after free in Audio in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
728 × 90 / responsive · programmatic ad slot
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10932 — Use: after free in UI in Google Chrome on Android prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10932

Use after free in UI in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
CRIT

CVE-2026-10931 — Google Chrome: Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10931

Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416VNDGoogleTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10930 — Google Chrome: Out of bounds read in ANGLE in Google Chrome on Mac prior to 149.0.7827.53

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10930

Out of bounds read in ANGLE in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.1 (HIGH)

CWECWE 125VNDGoogleTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10929 — Heap: buffer overflow in ANGLE in Google Chrome on Android prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10929

Heap buffer overflow in ANGLE in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 122VNDHeapTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10928 — Script: injection in Headless in Google Chrome prior to 149.0.7827.53 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10928

Script injection in Headless in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDScriptTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10927 — Out: of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10927

Out of bounds read in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 125TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10926 — Use: after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10926

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to execute arbitrary code via malicious network traffic. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10925 — Out: of bounds write in Skia in Google Chrome on Mac prior to 149.0.7827.53

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10925

Out of bounds write in Skia in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 787TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10924 — Integer: overflow in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10924

Integer overflow in Chromecast in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 472TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10923 — Use: after free in WebAppInstalls in Google Chrome on Android prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10923

Use after free in WebAppInstalls in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to execute arbitrary code via a malicious file. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10922 — Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10922

Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass same origin policy via malicious network traffic. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 20TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10921 — Integer: overflow in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10921

Integer overflow in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 472TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10920 — Insufficient validation of untrusted input in WebShare in Google Chrome on Mac prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10920

Insufficient validation of untrusted input in WebShare in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 20TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10919 — Use: after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10919

Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10918 — Use: after free in Viz in Google Chrome prior to 149.0.7827.53 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10918

Use after free in Viz in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10917 — Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10917

Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 20TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10915 — Use: after free in Core in Google Chrome on iOS prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10915

Use after free in Core in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
4d ago
2026-06-04 23:16Z
HIGH

CVE-2026-10914 — Use: after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10914

Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score