Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 6.1
CVE-2026-5899

Insufficient policy enforcement in History Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engag…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome MEDIUM 5.4
CVE-2026-5895

Incorrect security UI in Omnibox in Google Chrome on iOS prior to 147.0.7727.55 allowed a remote attacker to spoof the contents of the Omnibox (URL b…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome HIGH 8.8
CVE-2026-5884

Insufficient validation of untrusted input in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who had compromised the rendere…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome MEDIUM 6.5
CVE-2026-5885

Insufficient validation of untrusted input in WebML in Google Chrome on Windows prior to 147.0.7727.55 allowed a remote attacker to obtain potentiall…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome MEDIUM 6.5
CVE-2026-5888

Uninitialized Use in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from pro…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome MEDIUM 5.3
CVE-2026-5886

Out of bounds read in WebAudio in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information f…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome MEDIUM 5.3
CVE-2026-5890

Race in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory v…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome CRITICAL 9.6
CVE-2026-5874

Use after free in PrivateAI in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engage in specific UI gestures …

Fix: 147.0.7727.55+
Fix from $2,300 2026-04-08
Chrome HIGH 8.8
CVE-2026-5877

Use after free in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5879

Insufficient validation of untrusted input in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary cod…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5883

Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome MEDIUM 6.5
CVE-2026-5876

Side-channel information leakage in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to leak cross-origin data via a craf…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome MEDIUM 6.5
CVE-2026-5881

Policy bypass in LocalNetworkAccess in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass navigation restrictions via a crafted…

Fix: 147.0.7727.55+
Fix from $1,600 2026-04-08
Chrome HIGH 8.8
CVE-2026-5865

Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5866

Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5868

Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5870

Integer overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5871

Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5872

Use after free in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5873

Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5858

Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (C…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5859

Integer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5860

Use after free in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5861

Use after free in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5862

Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Chrome HIGH 8.8
CVE-2026-5863

Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a…

Fix: 147.0.7727.55+
Fix from $1,950 2026-04-08
Android MEDIUM 6.2
CVE-2026-0049

In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local …

Mitigation only
Fix from $1,600 2026-04-06
Android MEDIUM 5.5
CVE-2025-48651

In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to improper input validation. This c…

Mitigation only
Fix from $1,600 2026-04-06
Chrome CRITICAL 9.6
CVE-2026-5288

Use after free in WebView in Google Chrome on Android prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to p…

Fix: 146.0.7680.177+
Fix from $2,300 2026-04-01
Chrome CRITICAL 9.6
CVE-2026-5289

Use after free in Navigation in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 146.0.7680.177+
Fix from $2,300 2026-04-01