8.8

CVSS3.1

CVE-2026-7359 - chromium-browser: Use after free in ANGLE

Use after free in ANGLE in Google Chrome prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 4:37 p.m.

8.8

CVSS3.1

CVE-2026-7358 - chromium-browser: Use after free in Animation

Use after free in Animation in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 4:37 p.m.

8.8

CVSS3.1

CVE-2026-7354 - chromium-browser: Out of bounds read and write in Angle

Out of bounds read and write in Angle in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: May 1, 2026, 5:45 a.m.

3.1

CVSS3.1

CVE-2026-7351 - chromium-browser: Race in MHTML

Race in MHTML in Google Chrome prior to 147.0.7727.138 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 4:40 p.m.

8.1

CVSS3.1

CVE-2026-7346 - chromium-browser: Inappropriate implementation in Tint

Inappropriate implementation in Tint in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 6:28 p.m.

8.8

CVSS3.1

CVE-2026-7339 - chromium-browser: Heap buffer overflow in WebRTC

Heap buffer overflow in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 6:26 p.m.

8.8

CVSS3.1

CVE-2026-7336 - chromium-browser: Use after free in WebRTC

Use after free in WebRTC in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 6:28 p.m.

8.8

CVSS3.1

CVE-2026-7335 - chromium-browser: Use after free in media

Use after free in media in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 6:29 p.m.

9.6

CVSS3.1

CVE-2026-7333 - chromium-browser: Use after free in GPU

Use after free in GPU in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 30, 2026, 6:30 p.m.

5.9

CVSS3.1

CVE-2026-40356 - krb5: MIT Kerberos 5 (krb5): Denial of Service via integer underflow and out-of-bounds read

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the proc…

πŸ“… Published: April 28, 2026, midnight πŸ”„ Last Modified: April 28, 2026, 1:10 p.m.
Total resulsts: 347943
Page 108 of 34,795
Β« previous page Β» next page
Filters