Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2026-5899 Insufficient policy enforcement in History Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engag… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 MEDIUM 5.4 CVE-2026-5895 Incorrect security UI in Omnibox in Google Chrome on iOS prior to 147.0.7727.55 allowed a remote attacker to spoof the contents of the Omnibox (URL b… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 HIGH 8.8 CVE-2026-5884 Insufficient validation of untrusted input in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who had compromised the rendere… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 MEDIUM 6.5 CVE-2026-5885 Insufficient validation of untrusted input in WebML in Google Chrome on Windows prior to 147.0.7727.55 allowed a remote attacker to obtain potentiall… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 MEDIUM 6.5 CVE-2026-5888 Uninitialized Use in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from pro… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 MEDIUM 5.3 CVE-2026-5886 Out of bounds read in WebAudio in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information f… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 MEDIUM 5.3 CVE-2026-5890 Race in WebCodecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory v… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 CRITICAL 9.6 CVE-2026-5874 Use after free in PrivateAI in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engage in specific UI gestures … Chrome 147.0.7727.55+ Fix from $2,3002026-04-08 HIGH 8.8 CVE-2026-5877 Use after free in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5879 Insufficient validation of untrusted input in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary cod… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5883 Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 MEDIUM 6.5 CVE-2026-5876 Side-channel information leakage in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to leak cross-origin data via a craf… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 MEDIUM 6.5 CVE-2026-5881 Policy bypass in LocalNetworkAccess in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to bypass navigation restrictions via a crafted… Chrome 147.0.7727.55+ Fix from $1,6002026-04-08 HIGH 8.8 CVE-2026-5865 Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5866 Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5868 Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5870 Integer overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5871 Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5872 Use after free in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5873 Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5858 Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (C… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5859 Integer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5860 Use after free in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5861 Use after free in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5862 Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 HIGH 8.8 CVE-2026-5863 Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a… Chrome 147.0.7727.55+ Fix from $1,9502026-04-08 MEDIUM 6.2 CVE-2026-0049 In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local … Android Mitigation only Fix from $1,6002026-04-06 MEDIUM 5.5 CVE-2025-48651 In importWrappedKey of KMKeymasterApplet.java, there is a possible way access keys that should be restricted due to improper input validation. This c… Android Mitigation only Fix from $1,6002026-04-06 CRITICAL 9.6 CVE-2026-5288 Use after free in WebView in Google Chrome on Android prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to p… Chrome 146.0.7680.177+ Fix from $2,3002026-04-01 CRITICAL 9.6 CVE-2026-5289 Use after free in Navigation in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to potential… Chrome 146.0.7680.177+ Fix from $2,3002026-04-01