Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

26848
Total
1978
Critical
8065
High
8299
Medium
CVE ID Severity Score Description Published
CVE-2026-8563 MEDIUM 4.3 Insufficient policy enforcement in IFrame Sandbox in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to bypass navigation restrictions via a crafted … May 14, 2026
CVE-2026-8562 MEDIUM 4.3 Side-channel information leakage in Navigation in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium … May 14, 2026
CVE-2026-8561 MEDIUM 5.4 Incorrect security UI in Fullscreen in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium … May 14, 2026
CVE-2026-8560 MEDIUM 4.3 Heap buffer overflow in SwiftShader in Google Chrome on Mac and iOS prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds … May 14, 2026
CVE-2026-8559 MEDIUM 4.3 Integer overflow in Internationalization in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via … May 14, 2026
CVE-2026-8558 UNKNOWN Out of bounds write in Fonts in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a … May 14, 2026
CVE-2026-8557 HIGH 7.5 Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform privilege escalation … May 14, 2026
CVE-2026-8556 LOW 3.1 Inappropriate implementation in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin … May 14, 2026
CVE-2026-8555 HIGH 8.8 Use after free in GTK in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via a crafted HTML … May 14, 2026
CVE-2026-8554 LOW 3.1 Type Confusion in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an … May 14, 2026
CVE-2026-8553 LOW 3.1 Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out … May 14, 2026
CVE-2026-8552 MEDIUM 4.3 Heap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write … May 14, 2026
CVE-2026-8551 HIGH 8.8 Use after free in Downloads in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures … May 14, 2026
CVE-2026-8550 MEDIUM 6.5 Use after free in Google Lens in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially … May 14, 2026
CVE-2026-8549 HIGH 8.8 Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … May 14, 2026
CVE-2026-8548 HIGH 8.3 Out of bounds write in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform … May 14, 2026
CVE-2026-8547 HIGH 7.5 Insufficient policy enforcement in Passwords in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform … May 14, 2026
CVE-2026-8546 MEDIUM 5.3 Out of bounds read in GPU in Google Chrome on Mac and Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer … May 14, 2026
CVE-2026-8545 LOW 3.1 Object corruption in Compositing in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via … May 14, 2026
CVE-2026-8544 HIGH 8.8 Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted … May 14, 2026
CVE-2026-8543 MEDIUM 5.3 Out of bounds read in FileSystem in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in … May 14, 2026
CVE-2026-8542 HIGH 8.3 Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially … May 14, 2026
CVE-2026-8541 MEDIUM 5.3 Out of bounds read in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially … May 14, 2026
CVE-2026-8540 HIGH 8.8 Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … May 14, 2026
CVE-2026-8539 MEDIUM 5.4 Script injection in SanitizerAPI in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a … May 14, 2026