Vulnerability index

Browse CVEs

161 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
HIGH 8.8 CVE-2026-17969 Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbo… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 8.8 CVE-2026-17956 Inappropriate implementation in Scheduling in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandb… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 8.8 CVE-2026-17950 Inappropriate implementation in Safebrowsing in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code via a… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.5 CVE-2026-17952 Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension … Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 8.4 CVE-2026-17877 Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege es… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 8.8 CVE-2026-17868 Insufficient policy enforcement in USB in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform privilege escalation via a crafte… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.8 CVE-2026-17863 Inappropriate implementation in Browser in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege escalation v… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.8 CVE-2026-17864 Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalat… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.5 CVE-2026-17816 Insufficient policy enforcement in Speech in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the render… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 8.8 CVE-2026-17751 Inappropriate implementation in AdFilter in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.1 CVE-2026-17744 Inappropriate implementation in File Input in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbo… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 HIGH 7.8 CVE-2026-14124 Inappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level pr… Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 CRITICAL 9.6 CVE-2026-14101 Insufficient policy enforcement in Sandbox in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer … Chrome 150.0.7871.47+ Fix from $2,3002026-06-30 HIGH 8.8 CVE-2026-12448 Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to perform privilege escalation… Chrome 149.0.7827.155+ Fix from $1,9502026-06-17 MEDIUM 6.5 CVE-2026-12450 Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to obtain potentially sensitive information … Chrome 149.0.7827.155+ Fix from $1,6002026-06-17 HIGH 7.8 CVE-2026-0019 In SettingsLib, there is a possible way to disable system components due to a logic error in the code. This could lead to local escalation of privile… Android Mitigation only Fix from $1,9502026-06-17 HIGH 7.8 CVE-2026-0063 In setAllowedCarriers of PhoneInterfaceManager.java, there is a possible way to disable carrier restrictions due to a logic error in the code. This c… Android Mitigation only Fix from $1,9502026-06-17 HIGH 8.8 CVE-2026-12018 Inappropriate implementation in Mojo in Google Chrome on Windows prior to 149.0.7827.115 allowed a local attacker to perform OS-level privilege escal… Chrome 149.0.7827.115+ Fix from $1,9502026-06-11 MEDIUM 6.3 CVE-2026-11308 Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious ex… Chrome 149.0.7827.53+ Fix from $1,6002026-06-05 HIGH 8.8 CVE-2026-11295 Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform privilege escalation … Chrome 149.0.7827.53+ Fix from $1,9502026-06-05 HIGH 7.5 CVE-2026-11296 Inappropriate implementation in ImageCapture in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer proce… Chrome 149.0.7827.53+ Fix from $1,9502026-06-05 MEDIUM 5.1 CVE-2026-11276 Inappropriate implementation in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to bypass discretionary… Chrome 149.0.7827.53+ Fix from $1,6002026-06-05 MEDIUM 6.1 CVE-2026-11229 Inappropriate implementation in Enterprise in Google Chrome prior to 149.0.7827.53 allowed a local attacker to perform privilege escalation via physi… Chrome 149.0.7827.53+ Fix from $1,6002026-06-04 HIGH 8.8 CVE-2026-11108 Inappropriate implementation in NFC in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perform privilege escalation via … Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 7.8 CVE-2026-11103 Inappropriate implementation in Installer in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform OS-level privilege e… Chrome 149.0.7827.53+ Fix from $1,9502026-06-04 HIGH 7.8 CVE-2026-0089 In multiple functions of PackageInstallerService.java, there is a possible way to install unverified apps due to a missing permission check. This cou… Android Mitigation only Fix from $1,9502026-06-01 HIGH 7.8 CVE-2026-0091 In multiple locations, there is a possible way to execute code in the launcher process due to an over-privileged shell user. This could lead to local… Android Mitigation only Fix from $1,9502026-06-01 MEDIUM 6.8 CVE-2026-0086 In onCreate of DisableSupervisionActivity.kt, there is a possible way to delete supervision data due to a missing null check. This could lead to loca… Android Mitigation only Fix from $1,6002026-06-01 MEDIUM 6.8 CVE-2026-0048 In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead… Android Mitigation only Fix from $1,6002026-06-01 MEDIUM 6.2 CVE-2026-0046 In InputInterceptor of Letterbox.java, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This c… Android Mitigation only Fix from $1,6002026-06-01