Vulnerability index

Browse CVEs

1,003 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Chrome CRITICAL 9.1
CVE-2026-13851

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to bypass di…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.1
CVE-2026-13852

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to bypass di…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13843

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who had comprom…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13796

Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13797

Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the re…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13798

Heap buffer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to pote…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome CRITICAL 10.0
CVE-2026-13782

Use after free in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13785

Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13789

Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perfo…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13792

Use after free in Touchbar in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escape via a cra…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.8
CVE-2026-13775

Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perfo…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.8
CVE-2026-13776

Type Confusion in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perf…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13780

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rendere…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-13781

Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Mcp Toolbox For Databases CRITICAL 9.1
CVE-2026-11720

A path traversal vulnerability exists in the HTTP tool URL builder of googleapis/mcp-toolbox. When constructing downstream API requests, the URL bui…

Fix: 1.3.0+
Fix from $2,300 2026-06-29
Chrome CRITICAL 9.6
CVE-2026-13028

Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially perform a sandbox escape via a c…

Fix: 149.0.7827.197+
Fix from $2,300 2026-06-24
Chrome CRITICAL 9.6
CVE-2026-13032

Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially perform a sandbox escape via a c…

Fix: 149.0.7827.197+
Fix from $2,300 2026-06-24
Mcp Toolbox For Databases CRITICAL 9.1
CVE-2026-11717

An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When veri…

Fix: after 1.3.0
Fix from $2,300 2026-06-18
Mcp Toolbox For Databases CRITICAL 9.1
CVE-2026-11718

An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When the …

Fix: after 1.3.0
Fix from $2,300 2026-06-18
Chrome CRITICAL 9.6
CVE-2026-12440

Use after free in DigitalCredentials in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to potentially perform a sandbox e…

Fix: 149.0.7827.155+
Fix from $2,300 2026-06-17
Android CRITICAL 10.0
CVE-2026-0092

In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead to local escalation of privi…

Mitigation only
Fix from $2,300 2026-06-17
Android CRITICAL 9.8
CVE-2026-0126

In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execu…

Mitigation only
Fix from $2,300 2026-06-16
Chrome CRITICAL 9.6
CVE-2026-12027

Inappropriate implementation in Headless in Google Chrome prior to 149.0.7827.115 allowed a remote attacker who had compromised the renderer process …

Fix: 149.0.7827.115+
Fix from $2,300 2026-06-11
Chrome CRITICAL 9.6
CVE-2026-11697

Insufficient validation of untrusted input in UI in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox …

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11671

Use after free in Navigation in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11651

Use after free in Network in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11654

Use after free in CameraCapture in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11659

Integer overflow in UI in Google Chrome on Linux prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a craf…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11638

Use after free in Printing in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a crafted H…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09
Chrome CRITICAL 9.6
CVE-2026-11634

Use after free in Gamepad in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via a…

Fix: 149.0.7827.103+
Fix from $2,300 2026-06-09