5

CVSS3.1

CVE-2026-8009 - Chrome Cast Navigation Bypass via Renderer Compromise

Inappropriate implementation in Cast in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 3:20 p.m.

5.4

CVSS3.1

CVE-2026-8008 -

Inappropriate implementation in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a user to install a malicious extension to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 3:17 p.m.

7.5

CVSS3.1

CVE-2026-8007 -

Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 3:17 p.m.

5.4

CVSS3.1

CVE-2026-8006 - UI Spoofing in Chrome DevTools via Malicious Extension

Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a user to install a malicious extension to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 3:17 p.m.

4.3

CVSS3.1

CVE-2026-8005 -

Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 4 p.m.

4.3

CVSS3.1

CVE-2026-8004 - Chrome DevTools Policy Enforce Flaw Enables Cross-Origin Data Leak

Insufficient policy enforcement in DevTools in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 1:54 p.m.

5.4

CVSS3.1

CVE-2026-8003 - Insufficient Validation in Chrome TabGroups Enables UI Spoofing

Insufficient validation of untrusted input in TabGroups in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform UI spoofing via malicious network traffic. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 4 p.m.

8.8

CVSS3.1

CVE-2026-8002 -

Use after free in Audio in Google Chrome on Mac prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 2:03 p.m.

8.3

CVSS3.1

CVE-2026-8001 -

Use After Free in Printing in Google Chrome on Linux, Mac, ChromeOS prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 2:05 p.m.

8.8

CVSS3.1

CVE-2026-8000 - ChromeDriver Improper Input Validation Enables Remote Code Execution on Windows

Insufficient validation of untrusted input in ChromeDriver in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Low)

๐Ÿ“… Published: May 6, 2026, 6:13 p.m. ๐Ÿ”„ Last Modified: May 7, 2026, 4 p.m.
Total resulsts: 349182
Page 63 of 34,919
ยซ previous page ยป next page
Filters