3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79027 — Use: after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79027

Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network traffic. (Chromium security severity: High) CVSSv3.1 8.1 (HIGH)

CWECWE 416TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-79026 — Use: after free in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79026

Use after free in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79020 — Out: of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79020

Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted media file. (Chromium security severity: Medium) CVSSv3.1 8.1 (HIGH) · EPSS 16th percentile

CWECWE 125TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-79019 — Out: of bounds write in ANGLE in Google Chrome on on Windows prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79019

Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 787TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-79012 — Use: after free in Safebrowsing in Google Chrome on on Mac prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79012

Use after free in Safebrowsing in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79011 — Browser: UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79011

UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.1 (HIGH) · EPSS 32th percentile

CWECWE 451VNDBrowserTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-79008 — GPU: Improper input validation in GPU in Google Chrome on on Android prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79008

Improper input validation in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 20VNDGpuTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
728 × 90 / responsive · programmatic ad slot
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78999 — Navigation: Improper privilege management in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78999

Improper privilege management in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 269VNDNavigationTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78990 — Use: after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78990

Use after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78989 — Out: of bounds read in ANGLE in Google Chrome on on Windows prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78989

Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 125TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78985 — Incorrect: reference resolution in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78985

Incorrect reference resolution in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 706TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78983 — Use: after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78983

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78978 — Out: of bounds read in ANGLE in Google Chrome on on Windows prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78978

Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 125TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78964 — Use: after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78964

Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78963 — Media: Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78963

Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 20VNDMediaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78956 — Type: confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78956

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 8.8 (HIGH)

CWECWE 843VNDTypeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78952 — Out: of bounds write in Crashpad in Google Chrome on on Windows prior to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78952

Out of bounds write in Crashpad in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 787TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78951 — Use: after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78951

Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78950 — Integer: overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78950

Integer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low) CVSSv3.1 8.8 (HIGH)

CWECWE 190TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78948 — Buffer: overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78948

Buffer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 122VNDBufferTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78945 — Use: after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78945

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78944 — Use: after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78944

Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78939 — Use: after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78939

Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
3w ago
2026-08-25 21:17Z
HIGH

CVE-2026-78938 — Type: confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78938

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 843VNDTypeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3w ago
2026-08-25 21:17Z
CRIT

CVE-2026-78937 — Use: after free in Search in Google Chrome on on Android prior to 152.0.7977.65

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78937

Use after free in Search in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score