Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

11346
Total
769
Critical
3260
High
3665
Medium
CVE ID Severity Score Description Published
CVE-2026-5876 UNKNOWN Side-channel information leakage in Navigation in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium … Apr 08, 2026
CVE-2026-5875 UNKNOWN Policy bypass in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security … Apr 08, 2026
CVE-2026-5874 UNKNOWN Use after free in PrivateAI in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engage in specific UI gestures … Apr 08, 2026
CVE-2026-5873 UNKNOWN Out of bounds read and write in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox … Apr 08, 2026
CVE-2026-5872 UNKNOWN Use after free in Blink in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Apr 08, 2026
CVE-2026-5871 UNKNOWN Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Apr 08, 2026
CVE-2026-5870 UNKNOWN Integer overflow in Skia in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Apr 08, 2026
CVE-2026-5869 UNKNOWN Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a … Apr 08, 2026
CVE-2026-5868 UNKNOWN Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via … Apr 08, 2026
CVE-2026-5867 UNKNOWN Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a … Apr 08, 2026
CVE-2026-5866 HIGH 8.8 Use after free in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Apr 08, 2026
CVE-2026-5865 UNKNOWN Type Confusion in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Apr 08, 2026
CVE-2026-5864 UNKNOWN Heap buffer overflow in WebAudio in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a … Apr 08, 2026
CVE-2026-5863 UNKNOWN Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Apr 08, 2026
CVE-2026-5862 UNKNOWN Inappropriate implementation in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Apr 08, 2026
CVE-2026-5861 UNKNOWN Use after free in V8 in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Apr 08, 2026
CVE-2026-5860 UNKNOWN Use after free in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … Apr 08, 2026
CVE-2026-5859 UNKNOWN Integer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium … Apr 08, 2026
CVE-2026-5858 UNKNOWN Heap buffer overflow in WebML in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium … Apr 08, 2026
CVE-2026-5810 LOW 3.5 A flaw has been found in SourceCodester Sales and Inventory System 1.0. Affected is an unknown function of the file /delete.php of the component GET … Apr 08, 2026
CVE-2026-5808 MEDIUM 4.3 A vulnerability was detected in openstatusHQ openstatus up to 1b678e71a85961ae319cbb214a8eae634059330c. This impacts an unknown function of the file apps/dashboard/src/app/(dashboard)/onboarding/client.tsx of the component Onboarding Endpoint. The … Apr 08, 2026
CVE-2026-5806 LOW 3.5 A security vulnerability has been detected in code-projects Easy Blog Site 1.0. This affects an unknown function of the file /posts/update.php. The manipulation of the … Apr 08, 2026
CVE-2026-5711 MEDIUM 6.4 The Post Blocks & Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'sliderStyle' block attribute in the Posts Slider block in … Apr 08, 2026
CVE-2026-40037 MEDIUM 6.5 OpenClaw before 2026.3.31 (patched in 2026.4.8) contains a request body replay vulnerability in fetchWithSsrFGuard that allows unsafe request bodies to be resent across cross-origin redirects. … Apr 08, 2026
CVE-2026-40036 HIGH 7.5 Unfurl before 2026.04 contains an unbounded zlib decompression vulnerability in parse_compressed.py that allows remote attackers to cause denial of service. Attackers can submit highly compressed … Apr 08, 2026