Security Box Score — August 25, 2026 — page 2
Edition of August 25, 2026, continued — page 2 of 2. Back to page 1
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-65367 | 5.5 | — | Apple | iOS and iPadOS | CWE-476 | A null pointer dereference was addressed with improved input validation. This… |
| CVE-2026-68514 | 5.5 | — | AcademySoftwareFoundation | openexr | CWE-122 | OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel … |
| CVE-2026-71441 | 5.5 | — | Adobe | Illustrator Desktop 2026 | CWE-125 | Illustrator | Out-of-bounds Read (CWE-125) |
| CVE-2026-75752 | 5.5 | — | Adobe | Adobe Substance 3D Painter | CWE-125 | Substance3D - Painter | Out-of-bounds Read (CWE-125) |
| CVE-2026-76198 | 5.5 | — | Adobe | C2PA Tool | CWE-20 | CAI Content Credentials | Improper Input Validation (CWE-20) |
| CVE-2026-79622 | 5.5 | — | dekdee | adobe-xd-mcp | CWE-22 | dekdee adobe-xd-mcp file-access-from-request Endpoint xd-parser.ts path trave… |
| CVE-2026-79804 | 5.5 | — | SililaWijesinghe | Food Ordering System | CWE-74 | SililaWijesinghe Food Ordering System search.php sql injection |
| CVE-2026-79845 | 5.5 | — | code-projects | Simple Inventory System | CWE-74 | code-projects Simple Inventory System edit.php sql injection |
| CVE-2026-79912 | 5.5 | — | TOTOLINK | N600R | CWE-74 | TOTOLINK N600R cstecgi.cgi getCurrentTime command injection |
| CVE-2026-21754 | 5.4 | — | HCL Software | Hive | CWE-1004 | HCL Hive is affected by multiple security vulnerabilities. |
| CVE-2026-17587 | 5.3 | — | formulaagile | My Agile Privacy® – CMP, Cookie Consent & Privacy Tools | CWE-862 | My Agile Privacy® <= 3.3.6 - Missing Authorization to Unauthenticated Plugin … |
| CVE-2026-55419 | 5.3 | — | pollen-robotics | reachy_mini | CWE-434 | Reachy Mini: Unrestricted Upload of File with Dangerous Type |
| CVE-2026-55619 | 5.3 | — | GOVCERT-LU | eml_parser | CWE-770 | eml_parser: Parser DoS via deeply nested parentheses in e-mail headers |
| CVE-2026-55624 | 5.3 | — | MintyItanium | Lost-Auction | CWE-670 | MintyItanium Lost-Auction takes items like barrier blocks out from search GUI |
| CVE-2026-77585 | 5.3 | — | Okta | Okta Privileged Access Client | CWE-78 | Improper Validation of SSH Target in Okta Privileged Access Client |
| CVE-2026-77680 | 5.3 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-407 | Libsoup3: libsoup: quadratic cpu denial of service in http range coalescing a… |
| CVE-2026-78863 | 5.3 | — | liketrek | TREK | CWE-287 | liketrek TREK Pre-2FA mfa_token authService.ts loginUser improper authentication |
| CVE-2026-78864 | 5.3 | — | liketrek | TREK | CWE-74 | liketrek TREK Journey Entry Update journey.controller.t journeyService.update… |
| CVE-2026-79406 | 5.3 | — | macrozheng | mall | CWE-840 | macrozheng mall quantity OmsCartItemServiceImpl.updateQuantity logic error |
| CVE-2026-79669 | 5.3 | — | lin-snow | Ech0 | CWE-862 | Ech0 before 4.4.3 Missing Authorization on System Logs |
| CVE-2026-65085 | 5.2 | — | NVIDIA | OpenShell | CWE-116 | NVIDIA OpenShell for Linux contains a vulnerability in its inference proxy, w… |
| CVE-2026-16599 | 5.1 | — | GNU | wget | CWE-606 | Denial of Service in GNU wget |
| CVE-2026-24166 | 5.1 | — | NVIDIA | Unified Fabric Manager Enterprise - GA | CWE-321 | NVIDIA UFM Enterprise contains a vulnerability in the session management comp… |
| CVE-2026-77997 | 5.1 | — | yootheme.com | YOOtheme Pro extension for Joomla | CWE-284 | Joomla Extension - yootheme.com - Authenticated, privileged information discl… |
| CVE-2026-79671 | 5.1 | — | lin-snow | Ech0 | CWE-918 | Ech0 before 4.4.3 SSRF via DNS Resolution Bypass |
| CVE-2026-79777 | 5.1 | — | rclone | rclone | CWE-209 | rclone before v1.75.0 Information Disclosure via RC API |
| CVE-2026-77824 | 4.9 | — | wpcreatix | Media Sweep – WordPress Media Cleaner | CWE-89 | Media Sweep <= 1.1.3 - Authenticated (Administrator+) SQL Injection via 'fiel… |
| CVE-2026-26211 | 4.8 | — | Creativeitem | Ekushey Project Manager CRM | CWE-79 | Ekushey Project Manager CRM 5.0 Stored XSS via System Name Field |
| CVE-2026-79663 | 4.8 | — | lin-snow | Ech0 | CWE-79 | Ech0 before 4.7.3 Stored XSS via RSS feed tag names |
| CVE-2026-79670 | 4.8 | — | lin-snow | Ech0 | CWE-434 | Ech0 before 4.4.3 Stored XSS via SVG Upload |
| CVE-2026-80101 | 4.4 | — | Red Hat | Red Hat Enterprise Linux 6 | CWE-125 | Gimp: multiple heap out-of-bounds reads in xwd loader from unrelated width an… |
| CVE-2026-62986 | 4.3 | — | AcademySoftwareFoundation | openexr | CWE-200 | OpenEXR: PyOpenEXR deep prefixed RGB stale lane disclosure |
| CVE-2026-75908 | 4.3 | — | contrid | Newsletters | CWE-862 | Newsletters <= 4.17 - Missing Authorization to Authenticated (Author+) Arbitr… |
| CVE-2026-21753 | 4.2 | — | HCL Software | Hive | CWE-1104 | HCL Hive is affected by multiple security vulnerabilities. |
| CVE-2026-70665 | 4.2 | — | doorkeeper-gem | doorkeeper-openid_connect | CWE-285 | Doorkeeper OpenID Connect: DCR endpoint persists unvalidated client-supplied … |
| CVE-2026-78581 | 4.2 | — | Elastic | Kibana | CWE-639 | Authorization Bypass Through User-Controlled Key in Kibana Leading to Unautho… |
| CVE-2026-21758 | 3.7 | — | HCL Software | Hive | CWE-200 | HCL Hive is affected by multiple security vulnerabilities. |
| CVE-2026-70548 | 3.5 | — | jfrog | artifactory | CWE-918 | SSRF In CocoaPods Via JFrog Artifactory External Dependency |
| CVE-2026-43657 | 3.3 | — | Apple | iOS and iPadOS | CWE-269 | A permissions issue was addressed with additional restrictions. This issue is… |
| CVE-2026-79792 | 2.9 | — | zackees | transcribe-anything | CWE-77 | zackees transcribe-anything Yt-dlp Download ytldp_download.py ytdlp_download … |
| CVE-2026-15310 | 2.1 | — | Python Software Foundation | CPython | CWE-400 | zipfile: bzip2/LZMA/Zstandard members decompress without a max_length bound, … |
| CVE-2026-72924 | 2.1 | — | cli | cli | CWE-668 | GitHub CLI: `gh codespace ports forward` exposes forwarded services on all ne… |
| CVE-2026-79623 | 2.1 | — | FishCodeTech | Muteki | CWE-77 | FishCodeTech Muteki Default Local Worker Backend settings.json os command inj… |
| CVE-2026-79793 | 2.1 | — | code-projects | Online Shopping System | CWE-79 | code-projects Online Shopping System sumit_form.php cross site scripting |
| CVE-2026-79783 | 2.0 | — | rclone | rclone | CWE-732 | rclone before 1.74.4 Privilege Escalation via setuid Metadata |
| CVE-2026-80201 | 2.0 | — | kimai | kimai | CWE-94 | Kimai before 2.53.0 API Token Leakage via Invoice Template |
| CVE-2026-80200 | 0.0 | — | kimai | kimai | CWE-601 | Kimai before 2.53.0 Open Redirect via RelayState |
| CVE-2026-15088 | await | — | Drupal | Development Environment | — | Development Environment - Critical - Unsupported - SA-CONTRIB-2026-089 |
| CVE-2026-15916 | await | — | Drupal | Drupal core | CWE-862 | Drupal core - Moderately critical - Information disclosure - SA-CORE-2026-010 |
| CVE-2026-15917 | await | — | Drupal | Drupal core | CWE-79 | Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-011 |
| CVE-2026-16638 | await | — | Drupal | Media Folders | CWE-79 | Media Folders - Moderately critical - Cross site scripting - SA-CONTRIB-2026-080 |
| CVE-2026-16639 | await | — | Drupal | Internationalization Single Sign-On | CWE-288 | Internationalization Single Sign-On - Critical - Access bypass - SA-CONTRIB-2… |
| CVE-2026-16640 | await | — | Drupal | Search API Autocomplete | CWE-79 | Search API Autocomplete - Moderately critical - Cross-site Scripting - SA-CON… |
| CVE-2026-16641 | await | — | Drupal | Commerce Elavon | — | Commerce Elavon - Critical - Unsupported - SA-CONTRIB-2026-084 |
| CVE-2026-16642 | await | — | Drupal | Email Login OTP | — | Email Login OTP - Critical - Unsupported - SA-CONTRIB-2026-085 |
| CVE-2026-16643 | await | — | Drupal | Lunr exposed filters | — | Lunr exposed filters - Critical - Unsupported - SA-CONTRIB-2026-086 |
| CVE-2026-16644 | await | — | Drupal | Webform REST | CWE-863 | Webform REST - Moderately critical - Access bypass - SA-CONTRIB-2026-087 |
| CVE-2026-16645 | await | — | Drupal | PhotoSwipe - Responsive JavaScript Modal Image Gallery | CWE-862 | PhotoSwipe - Responsive JavaScript Modal Image Gallery - Moderately critical … |
| CVE-2026-16646 | await | — | Drupal | PanKM | — | PanKM - Critical - Unsupported - SA-CONTRIB-2026-083 |
| CVE-2026-18259 | await | — | Drupal | Token Content Access | CWE-208 | Token Content Access - Moderately critical - Access bypass - SA-CONTRIB-2026-090 |
| CVE-2026-18260 | await | — | Drupal | Disable Login Page | — | Disable Login Page - Critical - Unsupported - SA-CONTRIB-2026-091 |
| CVE-2026-18261 | await | — | Drupal | Powerful Surveys | — | Powerful Surveys - Critical - Unsupported - SA-CONTRIB-2026-092 |
| CVE-2026-18985 | await | — | Drupal | Edit in-place field | CWE-863 | Edit in-place field - Moderately critical - Access bypass - SA-CONTRIB-2026-093 |
| CVE-2026-19912 | await | — | Kaltura | Kaltura HTML5 Video Player, html5 library | — | CVE-2026-19912 |
| CVE-2026-19913 | await | — | Kaltura | Kaltura HTML5 Video Player, html5lib library | — | CVE-2026-19913 |
| CVE-2026-38465 | await | — | n/a | n/a | — | A Stored XSS vulnerability in the donor avatar mouse-over text feature in Gaz… |
| CVE-2026-38466 | await | — | n/a | n/a | — | A Stored XSS vulnerability in the torrent remaster custom title feature in Ga… |
| CVE-2026-38467 | await | — | n/a | n/a | — | A SQL injection vulnerability in the tags manager in GazellePW (GazellePoster… |
| CVE-2026-38468 | await | — | n/a | n/a | — | A SQL injection vulnerability in the country-code lookup endpoint in GazelleP… |
| CVE-2026-38469 | await | — | n/a | n/a | — | A Stored XSS vulnerability in the custom bonus title feature in GazellePW (Ga… |
| CVE-2026-38470 | await | — | n/a | n/a | — | A Broken access control vulnerability in the API user endpoint in GazellePW (… |
| CVE-2026-38472 | await | — | n/a | n/a | — | A Stored XSS vulnerability in forum reward comments in GazellePW (GazellePost… |
| CVE-2026-38473 | await | — | n/a | n/a | — | A Stored XSS vulnerability in the subtitle deletion flow in GazellePW (Gazell… |
| CVE-2026-38474 | await | — | n/a | n/a | — | GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449… |
| CVE-2026-39113 | await | — | n/a | n/a | — | Buffer Overflow vulnerability in SQLite affected version source snapshots/bui… |
| CVE-2026-43670 | await | — | Apple | Safari | — | A Content Security Policy bypass was addressed with improved enforcement in A… |
| CVE-2026-51368 | await | — | n/a | n/a | — | An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInov… |
| CVE-2026-52489 | await | — | n/a | n/a | — | Buffer Overflow vulnerability in gpac 31becc9e08b88e525a4a62013a4000de1c0f8fd… |
| CVE-2026-52491 | await | — | n/a | n/a | — | An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attack… |
| CVE-2026-53561 | await | — | Apache Software Foundation | Apache Hive | CWE-287 | Apache Hive: Unauthenticated authentication bypass in HiveServer2 HTTP SAML b… |
| CVE-2026-55805 | await | — | Drupal | Drupal core | CWE-79 | Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-012 |
| CVE-2026-55976 | await | — | Apache Software Foundation | Apache Hive | CWE-918 | Apache Hive: SSRF vulnerability in Hive Avro Serde due to Insufficient input … |
| CVE-2026-63073 | await | — | OpenSSL | OpenSSL | CWE-134 | Untrusted Sender DN Used as Format String in CMP Response Validation |
| CVE-2026-65182 | await | — | Apache Software Foundation | Apache Tomcat | CWE-284 | Apache Tomcat: Bypass longest prefix security constraint |
| CVE-2026-65183 | await | — | Apache Software Foundation | Apache Tomcat | CWE-367 | Apache Tomcat: TOCTOU when setting specific permissions for Unix Domain Sockets |
| CVE-2026-65637 | await | — | Apache Software Foundation | Apache Tomcat | CWE-20 | Apache Tomcat: HTTP/2 no-authority bypass of strict SNI validation - CVE-2026… |
| CVE-2026-65905 | await | — | Apache Software Foundation | Apache Tomcat | CWE-294 | Apache Tomcat: Limited replay attack possible with DIGEST authentication |
| CVE-2026-65927 | await | — | Apache Software Foundation | Apache Tomcat | CWE-193 | Apache Tomcat: RewriteValve [N] restarts at the second rule and may bypass ac… |
| CVE-2026-66152 | await | — | SonicWall | NetExtender | CWE-29 | A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender… |
| CVE-2026-66153 | await | — | SonicWall | NetExtender | CWE-59 | The NEService auto-upgrade process insecurely handles temporary files in Soni… |
| CVE-2026-66422 | await | — | Apache Software Foundation | Apache Tomcat | CWE-285 | Apache Tomcat: Servlet role references can bypass declarative role constraints |
| CVE-2026-68525 | await | — | Apache Software Foundation | Apache Tomcat | CWE-863 | Apache Tomcat: Redirect after FORM auth may bypass method specific constraints |
| CVE-2026-68569 | await | — | Apache Software Foundation | Apache Tomcat | CWE-287 | Apache Tomcat: Principal lookup can fail open in some cases |
| CVE-2026-68763 | await | — | Apache Software Foundation | Apache Tomcat | CWE-400 | Apache Tomcat: DoS via allocation leak in HTTP/2 backlog tracking when a stre… |
| CVE-2026-73180 | await | — | Apache Software Foundation | Apache Tomcat | CWE-613 | Apache Tomcat: Authenticated WebSocket session survives end of HTTP session |
| CVE-2026-75421 | await | — | n/a | n/a | — | aria2 <=1.37.0 has a stack-buffer-underflow vulnerability in the IOFile::getL… |
| CVE-2026-75465 | await | — | n/a | n/a | — | The /api.php/user/get_list endpoint in Maccms v10 v2026.1000.4055 is vulnerab… |
| CVE-2026-75803 | await | — | OpenSSL | OpenSSL | CWE-354 | AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher() |
| CVE-2026-78619 | await | — | — | Punk-TOTP | CWE-305 | Punk::Plugin::TOTP versions before 0.05 for Perl accept another account's rec… |
| CVE-2026-78655 | await | — | — | Punk-TOTP | CWE-307 | Punk::Plugin::TOTP versions before 0.05 for Perl allow the second-factor atte… |
| CVE-2026-78891 | await | — | Chrome | CWE-122 | Buffer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-78892 | await | — | Chrome | CWE-863 | Incorrect authorization in Chromoting in Google Chrome on on Windows prior to… | |
| CVE-2026-78893 | await | — | Chrome | CWE-200 | Information leak in QUIC in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-78894 | await | — | Chrome | CWE-367 | Race condition in Payments in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-78895 | await | — | Chrome | CWE-200 | Information leak in Paint in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-78896 | await | — | Chrome | CWE-200 | Information leak in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-78897 | await | — | Chrome | CWE-862 | Missing authorization in BrowserTag in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-78898 | await | — | Chrome | CWE-863 | Incorrect authorization in Downloads in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-78900 | await | — | Chrome | CWE-20 | Improper input validation in Media in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-78901 | await | — | Chrome | CWE-362 | Race condition in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-78903 | await | — | Chrome | CWE-459 | Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-78904 | await | — | Chrome | CWE-843 | Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-78905 | await | — | Chrome | CWE-843 | Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-78906 | await | — | Chrome | CWE-362 | Race condition in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-78907 | await | — | Chrome | CWE-863 | Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-78908 | await | — | Chrome | CWE-200 | Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-78910 | await | — | Chrome | CWE-121 | Buffer overflow in V8 in Google Chrome prior to 152.0.7977.65 allowed a remot… | |
| CVE-2026-78911 | await | — | Chrome | CWE-863 | Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78912 | await | — | Chrome | CWE-451 | UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78913 | await | — | Chrome | CWE-416 | Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-78914 | await | — | Chrome | CWE-908 | Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78915 | await | — | Chrome | CWE-362 | Race condition in Enterprise in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-78934 | await | — | Chrome | CWE-362 | Race condition in ReadAloud in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-78935 | await | — | Chrome | CWE-457 | Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 1… | |
| CVE-2026-78936 | await | — | Chrome | CWE-203 | Observable discrepancy in CustomTabs in Google Chrome on on Android prior to … | |
| CVE-2026-78938 | await | — | Chrome | CWE-843 | Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-78940 | await | — | Chrome | CWE-665 | Improper initialization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-78941 | await | — | Chrome | CWE-200 | Information leak in Core in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-78942 | await | — | Chrome | CWE-706 | Incorrect reference resolution in Loader in Google Chrome prior to 152.0.7977… | |
| CVE-2026-78943 | await | — | Chrome | CWE-20 | Improper input validation in Editing in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-78946 | await | — | Chrome | CWE-863 | Incorrect authorization in Select in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-78947 | await | — | Chrome | CWE-459 | Incomplete cleanup in Chromium in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78948 | await | — | Chrome | CWE-122 | Buffer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-78949 | await | — | Chrome | CWE-203 | Observable discrepancy in CustomTabs in Google Chrome on on Android prior to … | |
| CVE-2026-78950 | await | — | Chrome | CWE-190 | Integer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-78952 | await | — | Chrome | CWE-787 | Out of bounds write in Crashpad in Google Chrome on on Windows prior to 152.0… | |
| CVE-2026-78953 | await | — | Chrome | CWE-862 | Missing authorization in SiteIsolation in Google Chrome prior to 152.0.7977.6… | |
| CVE-2026-78954 | await | — | Chrome | CWE-863 | Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-78955 | await | — | Chrome | CWE-203 | Observable discrepancy in PerformanceAPIs in Google Chrome prior to 152.0.797… | |
| CVE-2026-78956 | await | — | Chrome | CWE-843 | Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-78957 | await | — | Chrome | CWE-200 | Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 … | |
| CVE-2026-78958 | await | — | Chrome | CWE-908 | Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78959 | await | — | Chrome | CWE-178 | Improper handling of case sensitivity in FileSystem in Google Chrome prior to… | |
| CVE-2026-78960 | await | — | Chrome | CWE-200 | Information leak in Extensions in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78961 | await | — | Chrome | CWE-863 | Incorrect authorization in Core in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78962 | await | — | Chrome | CWE-908 | Uninitialized resource in WebXR in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78963 | await | — | Chrome | CWE-20 | Improper input validation in Media in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-78965 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78966 | await | — | Chrome | CWE-610 | Externally controlled reference in QUIC in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-78967 | await | — | Chrome | CWE-862 | Missing authorization in BFCache in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-78968 | await | — | Chrome | CWE-862 | Missing authorization in Core in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-78969 | await | — | Chrome | CWE-908 | Uninitialized resource in Video in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78974 | await | — | Chrome | CWE-451 | UI misrepresentation in Linux Toolkit Theming in Google Chrome prior to 152.0… | |
| CVE-2026-78975 | await | — | Chrome | CWE-863 | Incorrect authorization in DOM in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-78976 | await | — | Chrome | CWE-20 | Improper input validation in StorageAccessAPI in Google Chrome prior to 152.0… | |
| CVE-2026-78977 | await | — | Chrome | CWE-908 | Uninitialized resource in GPU in Google Chrome on on Android prior to 152.0.7… | |
| CVE-2026-78978 | await | — | Chrome | CWE-125 | Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.797… | |
| CVE-2026-78979 | await | — | Chrome | CWE-362 | Race condition in Core in Google Chrome on on Windows prior to 152.0.7977.65 … | |
| CVE-2026-78980 | await | — | Chrome | CWE-20 | Improper input validation in ReaderMode in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-78981 | await | — | Chrome | CWE-200 | Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 … | |
| CVE-2026-78984 | await | — | Chrome | CWE-908 | Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-78985 | await | — | Chrome | CWE-706 | Incorrect reference resolution in FileSystem in Google Chrome prior to 152.0.… | |
| CVE-2026-78986 | await | — | Chrome | CWE-908 | Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-78987 | await | — | Chrome | CWE-200 | Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-78989 | await | — | Chrome | CWE-125 | Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.797… | |
| CVE-2026-78991 | await | — | Chrome | CWE-367 | Race condition in WebProtect in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-78999 | await | — | Chrome | CWE-269 | Improper privilege management in Navigation in Google Chrome prior to 152.0.7… | |
| CVE-2026-79000 | await | — | Chrome | CWE-20 | Improper input validation in DeviceBoundSessionCredentials in Google Chrome p… | |
| CVE-2026-79001 | await | — | Chrome | CWE-200 | Information leak in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.… | |
| CVE-2026-79002 | await | — | Chrome | CWE-863 | Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79003 | await | — | Chrome | CWE-863 | Incorrect authorization in Device in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79004 | await | — | Chrome | CWE-125 | Out of bounds read in Media in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79005 | await | — | Chrome | CWE-863 | Incorrect authorization in StorageAccessAPI in Google Chrome prior to 152.0.7… | |
| CVE-2026-79006 | await | — | Chrome | CWE-693 | Protection mechanism failure in HttpsUpgrades in Google Chrome prior to 152.0… | |
| CVE-2026-79007 | await | — | Chrome | CWE-908 | Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-79008 | await | — | Chrome | CWE-20 | Improper input validation in GPU in Google Chrome on on Android prior to 152.… | |
| CVE-2026-79009 | await | — | Chrome | CWE-451 | UI misrepresentation in UI in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79010 | await | — | Chrome | CWE-672 | Operation on a resource after expiration or release in Network in Google Chro… | |
| CVE-2026-79011 | await | — | Chrome | CWE-451 | UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79013 | await | — | Chrome | CWE-20 | Improper input validation in Sync in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79014 | await | — | Chrome | CWE-362 | Race condition in Autofill in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79015 | await | — | Chrome | CWE-20 | Improper input validation in ServiceWorker in Google Chrome prior to 152.0.79… | |
| CVE-2026-79016 | await | — | Chrome | CWE-203 | Observable discrepancy in SVG in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-79017 | await | — | Chrome | CWE-367 | Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79018 | await | — | Chrome | CWE-200 | Information leak in FoldableAPIs in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79019 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79020 | await | — | Chrome | CWE-125 | Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79021 | await | — | Chrome | CWE-862 | Missing authorization in InterestGroups in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79022 | await | — | Chrome | CWE-451 | UI misrepresentation in Transactions Platform in Google Chrome prior to 152.0… | |
| CVE-2026-79023 | await | — | Chrome | CWE-863 | Incorrect authorization in Editing in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79024 | await | — | Chrome | CWE-200 | Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79025 | await | — | Chrome | CWE-20 | Improper input validation in Workers in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79026 | await | — | Chrome | CWE-416 | Use after free in Extensions in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79028 | await | — | Chrome | CWE-203 | Observable discrepancy in Network in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79030 | await | — | Chrome | CWE-203 | Observable discrepancy in Autofill in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79031 | await | — | Chrome | CWE-668 | Improper resource exposure in Preload in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79032 | await | — | Chrome | CWE-20 | Improper input validation in Network in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79033 | await | — | Chrome | CWE-691 | Insufficient control flow management in DevTools in Google Chrome prior to 15… | |
| CVE-2026-79034 | await | — | Chrome | CWE-200 | Information leak in CORS in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79038 | await | — | Chrome | CWE-863 | Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79039 | await | — | Chrome | CWE-416 | Use after free in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 al… | |
| CVE-2026-79040 | await | — | Chrome | CWE-908 | Uninitialized resource in GPU in Google Chrome on on Android prior to 152.0.7… | |
| CVE-2026-79041 | await | — | Chrome | CWE-862 | Missing authorization in Browser in Google Chrome on on Mac prior to 152.0.79… | |
| CVE-2026-79042 | await | — | Chrome | CWE-862 | Missing authorization in Payments in Google Chrome on on Android prior to 152… | |
| CVE-2026-79043 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79044 | await | — | Chrome | CWE-862 | Missing authorization in WebAppInstalls in Google Chrome on on Android prior … | |
| CVE-2026-79045 | await | — | Chrome | CWE-843 | Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-79046 | await | — | Chrome | CWE-367 | Race condition in Permissions in Google Chrome on on Android prior to 152.0.7… | |
| CVE-2026-79048 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79049 | await | — | Chrome | CWE-706 | Incorrect reference resolution in Passwords in Google Chrome prior to 152.0.7… | |
| CVE-2026-79050 | await | — | Chrome | CWE-863 | Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79051 | await | — | Chrome | CWE-863 | Incorrect authorization in Loader in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79053 | await | — | Chrome | CWE-862 | Missing authorization in Lighthouse in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-79055 | await | — | Chrome | CWE-200 | Information leak in Sharing in Google Chrome on on Android prior to 152.0.797… | |
| CVE-2026-79057 | await | — | Chrome | CWE-367 | Race condition in Start in Google Chrome on on Android prior to 152.0.7977.65… | |
| CVE-2026-79058 | await | — | Chrome | CWE-862 | Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79059 | await | — | Chrome | CWE-200 | Information leak in BFCache in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79060 | await | — | Chrome | CWE-863 | Incorrect authorization in StorageAccessAPI in Google Chrome prior to 152.0.7… | |
| CVE-2026-79064 | await | — | Chrome | CWE-416 | Use after free in Network in Google Chrome on on Mac prior to 152.0.7977.65 a… | |
| CVE-2026-79065 | await | — | Chrome | CWE-20 | Improper input validation in Network in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79066 | await | — | Chrome | CWE-20 | Improper input validation in Navigation in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79067 | await | — | Chrome | CWE-862 | Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79068 | await | — | Chrome | CWE-668 | Improper resource exposure in StreamsAPI in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79069 | await | — | Chrome | CWE-119 | Memory corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 a… | |
| CVE-2026-79070 | await | — | Chrome | CWE-706 | Incorrect reference resolution in Cache in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79071 | await | — | Chrome | CWE-367 | Race condition in GPU in Google Chrome prior to 152.0.7977.65 allowed a remot… | |
| CVE-2026-79072 | await | — | Chrome | CWE-754 | Improper state validation in Performance in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79073 | await | — | Chrome | CWE-754 | Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-79074 | await | — | Chrome | CWE-200 | Information leak in Network in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79075 | await | — | Chrome | CWE-200 | Information leak in Geolocation in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79076 | await | — | Chrome | CWE-20 | Improper input validation in Sync in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79077 | await | — | Chrome | CWE-863 | Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79082 | await | — | Chrome | CWE-863 | Incorrect authorization in Transactions Platform in Google Chrome prior to 15… | |
| CVE-2026-79083 | await | — | Chrome | CWE-841 | Improper enforcement of behavioral workflow in Media in Google Chrome prior t… | |
| CVE-2026-79084 | await | — | Chrome | CWE-326 | Inadequate encryption strength in Notifications in Google Chrome on on Window… | |
| CVE-2026-79085 | await | — | Chrome | CWE-862 | Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79086 | await | — | Chrome | CWE-862 | Missing authorization in CustomTabs in Google Chrome on on Android prior to 1… | |
| CVE-2026-79087 | await | — | Chrome | CWE-74 | Injection in Chrome Tabs in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79088 | await | — | Chrome | CWE-863 | Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79089 | await | — | Chrome | CWE-367 | Race condition in Transactions Platform in Google Chrome on on Android prior … | |
| CVE-2026-79090 | await | — | Chrome | CWE-269 | Improper privilege management in Actor in Google Chrome prior to 152.0.7977.6… | |
| CVE-2026-79093 | await | — | Chrome | CWE-863 | Incorrect authorization in Paint in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79094 | await | — | Chrome | CWE-362 | Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-79095 | await | — | Chrome | CWE-200 | Information leak in Payments in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79098 | await | — | Chrome | CWE-451 | UI misrepresentation in PermissionElement in Google Chrome prior to 152.0.797… | |
| CVE-2026-79099 | await | — | Chrome | CWE-862 | Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79103 | await | — | Chrome | CWE-706 | Incorrect reference resolution in Speech in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79104 | await | — | Chrome | CWE-862 | Missing authorization in Sensor in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79105 | await | — | Chrome | CWE-20 | Improper input validation in Mobile in Google Chrome on on iOS prior to 152.0… | |
| CVE-2026-79106 | await | — | Chrome | CWE-20 | Improper input validation in Input in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79107 | await | — | Chrome | CWE-863 | Incorrect authorization in TabGroups in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79108 | await | — | Chrome | CWE-451 | UI misrepresentation in Web Authentication (Passkeys & Security Keys) in Goog… | |
| CVE-2026-79109 | await | — | Chrome | CWE-20 | Improper input validation in Printing in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79110 | await | — | Chrome | CWE-862 | Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79111 | await | — | Chrome | CWE-20 | Improper input validation in Dawn in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79112 | await | — | Chrome | CWE-125 | Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79116 | await | — | Chrome | CWE-862 | Missing authorization in Viz in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79117 | await | — | Chrome | CWE-362 | Race condition in WebAppInstalls in Google Chrome on on Android prior to 152.… | |
| CVE-2026-79118 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79120 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79121 | await | — | Chrome | CWE-20 | Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79122 | await | — | Chrome | CWE-200 | Information leak in SignIn in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79123 | await | — | Chrome | CWE-20 | Improper input validation in NTP Footer in Google Chrome on on Windows prior … | |
| CVE-2026-79124 | await | — | Chrome | CWE-200 | Information leak in Intents in Google Chrome on on Android prior to 152.0.797… | |
| CVE-2026-79125 | await | — | Chrome | CWE-200 | Information leak in XR in Google Chrome prior to 152.0.7977.65 allowed a remo… | |
| CVE-2026-79126 | await | — | Chrome | CWE-684 | Incorrect provision of specified functionality in Proxy in Google Chrome on o… | |
| CVE-2026-79127 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79129 | await | — | Chrome | CWE-416 | Use after free in Sessions in Google Chrome on on Android prior to 152.0.7977… | |
| CVE-2026-79130 | await | — | Chrome | CWE-122 | Buffer overflow in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79131 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79132 | await | — | Chrome | CWE-20 | Improper input validation in Input in Google Chrome on on Android prior to 15… | |
| CVE-2026-79133 | await | — | Chrome | CWE-863 | Incorrect authorization in Forms in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79134 | await | — | Chrome | CWE-863 | Incorrect authorization in GetUserMedia in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79136 | await | — | Chrome | CWE-863 | Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79137 | await | — | Chrome | CWE-863 | Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79138 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79139 | await | — | Chrome | CWE-20 | Improper input validation in Media in Google Chrome on on Windows prior to 15… | |
| CVE-2026-79141 | await | — | Chrome | CWE-863 | Incorrect authorization in Browser in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79142 | await | — | Chrome | CWE-122 | Buffer overflow in ANGLE in Google Chrome on on Android prior to 152.0.7977.6… | |
| CVE-2026-79143 | await | — | Chrome | CWE-863 | Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79144 | await | — | Chrome | CWE-200 | Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79146 | await | — | Chrome | CWE-200 | Information leak in CustomTabs in Google Chrome on on Android prior to 152.0.… | |
| CVE-2026-79147 | await | — | Chrome | CWE-200 | Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79148 | await | — | Chrome | CWE-193 | Off-by-one error in DevTools in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79151 | await | — | Chrome | CWE-20 | Improper input validation in Safebrowsing in Google Chrome prior to 152.0.797… | |
| CVE-2026-79152 | await | — | Chrome | CWE-863 | Incorrect authorization in CustomTabs in Google Chrome on on Android prior to… | |
| CVE-2026-79154 | await | — | Chrome | CWE-862 | Missing authorization in DevTools in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79155 | await | — | Chrome | CWE-367 | Race condition in FileSystem in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79173 | await | — | Chrome | CWE-451 | UI misrepresentation in WebAppInstalls in Google Chrome prior to 152.0.7977.6… | |
| CVE-2026-79174 | await | — | Chrome | CWE-863 | Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79175 | await | — | Chrome | CWE-843 | Type confusion in Accessibility in Google Chrome on on Windows prior to 152.0… | |
| CVE-2026-79176 | await | — | Chrome | CWE-451 | UI misrepresentation in Extensions in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79177 | await | — | Chrome | CWE-863 | Incorrect authorization in Media in Google Chrome on on Windows prior to 152.… | |
| CVE-2026-79178 | await | — | Chrome | CWE-863 | Incorrect authorization in Web Authentication (Passkeys & Security Keys) in G… | |
| CVE-2026-79179 | await | — | Chrome | CWE-863 | Incorrect authorization in DOM in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79180 | await | — | Chrome | CWE-451 | UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 15… | |
| CVE-2026-79181 | await | — | Chrome | CWE-203 | Observable discrepancy in Glic in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79182 | await | — | Chrome | CWE-20 | Improper input validation in Media in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79183 | await | — | Chrome | CWE-416 | Use after free in Accessibility in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79184 | await | — | Chrome | CWE-862 | Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79185 | await | — | Chrome | CWE-200 | Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79186 | await | — | Chrome | CWE-863 | Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79188 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79189 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79190 | await | — | Chrome | CWE-863 | Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79191 | await | — | Chrome | CWE-863 | Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79192 | await | — | Chrome | CWE-20 | Improper input validation in Variations in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79193 | await | — | Chrome | CWE-200 | Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79194 | await | — | Chrome | CWE-416 | Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79196 | await | — | Chrome | CWE-367 | Race condition in Editing in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-79199 | await | — | Chrome | CWE-863 | Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79201 | await | — | Chrome | CWE-284 | Improper access control in Workers in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79203 | await | — | Chrome | CWE-20 | Improper input validation in DevTools in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79204 | await | — | Chrome | CWE-451 | UI misrepresentation in Input in Google Chrome on on Mac prior to 152.0.7977.… | |
| CVE-2026-79205 | await | — | Chrome | CWE-863 | Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79206 | await | — | Chrome | CWE-125 | Out of bounds read in FileSystem in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79207 | await | — | Chrome | CWE-200 | Information leak in Passwords in Google Chrome on on iOS prior to 152.0.7977.… | |
| CVE-2026-79208 | await | — | Chrome | CWE-862 | Missing authorization in HTTP2 in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79209 | await | — | Chrome | CWE-843 | Type confusion in Animation in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79211 | await | — | Chrome | CWE-863 | Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79212 | await | — | Chrome | CWE-862 | Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79213 | await | — | Chrome | CWE-863 | Incorrect authorization in WebAppInstalls in Google Chrome on on Android prio… | |
| CVE-2026-79214 | await | — | Chrome | CWE-20 | Improper input validation in Preload in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79215 | await | — | Chrome | CWE-190 | Integer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-79216 | await | — | Chrome | CWE-122 | Buffer overflow in Blink in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79217 | await | — | Chrome | CWE-863 | Incorrect authorization in Mobile in Google Chrome on on iOS prior to 152.0.7… | |
| CVE-2026-79218 | await | — | Chrome | CWE-863 | Incorrect authorization in Sandbox in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79219 | await | — | Chrome | CWE-416 | Use after free in Bluetooth in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79220 | await | — | Chrome | CWE-200 | Information leak in Network in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79221 | await | — | Chrome | CWE-908 | Uninitialized resource in Dawn in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79222 | await | — | Chrome | CWE-863 | Incorrect authorization in CustomTabs in Google Chrome on on Android prior to… | |
| CVE-2026-79223 | await | — | Chrome | CWE-190 | Integer overflow in Chromium in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79225 | await | — | Chrome | CWE-863 | Incorrect authorization in Browser in Google Chrome on on Android prior to 15… | |
| CVE-2026-79226 | await | — | Chrome | CWE-269 | Improper privilege management in Regional Capabilities in Google Chrome prior… | |
| CVE-2026-79227 | await | — | Chrome | CWE-843 | Type confusion in DevTools in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79228 | await | — | Chrome | CWE-863 | Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79229 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79230 | await | — | Chrome | CWE-20 | Improper input validation in ANGLE in Google Chrome on on Mac prior to 152.0.… | |
| CVE-2026-79231 | await | — | Chrome | CWE-122 | Buffer overflow in Media in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79233 | await | — | Chrome | CWE-451 | UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 15… | |
| CVE-2026-79234 | await | — | Chrome | CWE-74 | Injection in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote att… | |
| CVE-2026-79236 | await | — | Chrome | CWE-843 | Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-79237 | await | — | Chrome | CWE-863 | Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.65… | |
| CVE-2026-79238 | await | — | Chrome | CWE-863 | Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977… | |
| CVE-2026-79239 | await | — | Chrome | CWE-125 | Out of bounds read in Tint in Google Chrome on on Android prior to 152.0.7977… | |
| CVE-2026-79240 | await | — | Chrome | CWE-787 | Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79241 | await | — | Chrome | CWE-125 | Out of bounds read in GPU in Google Chrome on on Android prior to 152.0.7977.… | |
| CVE-2026-79242 | await | — | Chrome | CWE-203 | Observable discrepancy in HTML in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79243 | await | — | Chrome | CWE-20 | Improper input validation in ReadingList in Google Chrome on on Windows prior… | |
| CVE-2026-79245 | await | — | Chrome | CWE-416 | Use after free in UI in Google Chrome prior to 152.0.7977.65 allowed a local … | |
| CVE-2026-79246 | await | — | Chrome | CWE-200 | Information leak in DataTransfer in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79247 | await | — | Chrome | CWE-416 | Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.79… | |
| CVE-2026-79248 | await | — | Chrome | CWE-863 | Incorrect authorization in Input in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79249 | await | — | Chrome | CWE-94 | Code injection in Bisection in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79250 | await | — | Chrome | CWE-451 | UI misrepresentation in Navigation in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79251 | await | — | Chrome | CWE-20 | Improper input validation in Network in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79252 | await | — | Chrome | CWE-200 | Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 all… | |
| CVE-2026-79253 | await | — | Chrome | CWE-20 | Improper input validation in Network in Google Chrome on on Windows prior to … | |
| CVE-2026-79254 | await | — | Chrome | CWE-706 | Incorrect reference resolution in CustomTabs in Google Chrome on on Android p… | |
| CVE-2026-79255 | await | — | Chrome | CWE-20 | Improper input validation in WebRTC in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-79256 | await | — | Chrome | CWE-610 | Externally controlled reference in WebView in Google Chrome on on Android pri… | |
| CVE-2026-79258 | await | — | Chrome | CWE-863 | Incorrect authorization in WebXR in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79259 | await | — | Chrome | CWE-20 | Improper input validation in Safebrowsing in Google Chrome prior to 152.0.797… | |
| CVE-2026-79260 | await | — | Chrome | CWE-20 | Improper input validation in Cookies in Google Chrome prior to 152.0.7977.65 … | |
| CVE-2026-79261 | await | — | Chrome | CWE-863 | Incorrect authorization in Controls in Google Chrome prior to 152.0.7977.65 a… | |
| CVE-2026-79262 | await | — | Chrome | CWE-863 | Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79263 | await | — | Chrome | CWE-367 | Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79264 | await | — | Chrome | CWE-706 | Incorrect reference resolution in Preload in Google Chrome prior to 152.0.797… | |
| CVE-2026-79265 | await | — | Chrome | CWE-459 | Incomplete cleanup in GetUserMedia in Google Chrome prior to 152.0.7977.65 al… | |
| CVE-2026-79267 | await | — | Chrome | CWE-367 | Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a r… | |
| CVE-2026-79269 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79270 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79271 | await | — | Chrome | CWE-200 | Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79272 | await | — | Chrome | CWE-20 | Improper input validation in FindInPage in Google Chrome prior to 152.0.7977.… | |
| CVE-2026-79273 | await | — | Chrome | CWE-706 | Incorrect reference resolution in WebView in Google Chrome on on Android prio… | |
| CVE-2026-79274 | await | — | Chrome | CWE-200 | Information leak in GPU in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79276 | await | — | Chrome | CWE-269 | Improper privilege management in FileSystem in Google Chrome prior to 152.0.7… | |
| CVE-2026-79283 | await | — | Chrome | CWE-451 | UI misrepresentation in Geometry in Google Chrome prior to 152.0.7977.65 allo… | |
| CVE-2026-79284 | await | — | Chrome | CWE-451 | UI misrepresentation in Core in Google Chrome on on Mac prior to 152.0.7977.6… | |
| CVE-2026-79285 | await | — | Chrome | CWE-908 | Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 152.0… | |
| CVE-2026-79286 | await | — | Chrome | CWE-862 | Missing authorization in CustomTabs in Google Chrome on on Android prior to 1… | |
| CVE-2026-79287 | await | — | Chrome | CWE-203 | Observable discrepancy in Forms in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79288 | await | — | Chrome | CWE-20 | Improper input validation in Autofill in Google Chrome on on Android prior to… | |
| CVE-2026-79289 | await | — | Chrome | CWE-664 | Improper control of a resource through its lifetime in Workers in Google Chro… | |
| CVE-2026-79291 | await | — | Chrome | CWE-200 | Information leak in CSS in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79292 | await | — | Chrome | CWE-190 | Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowe… | |
| CVE-2026-79293 | await | — | Chrome | CWE-200 | Information leak in Animation in Google Chrome prior to 152.0.7977.65 allowed… |