CVE Database

48241+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-79182
8.8 HIGH

Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79175
8.3 HIGH

Type confusion in Accessibility in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute …

Aug 25, 2026
CVE-2026-79155
8.3 HIGH

Race condition in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code …

Aug 25, 2026
CVE-2026-79142
8.8 HIGH

Buffer overflow in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via …

Aug 25, 2026
CVE-2026-79139
7.5 HIGH

Improper input validation in Media in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79132
8.3 HIGH

Improper input validation in Input in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-79127
8.8 HIGH

Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-79121
8.3 HIGH

Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary …

Aug 25, 2026
CVE-2026-79119
8.8 HIGH

Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79109
8.3 HIGH

Improper input validation in Printing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary …

Aug 25, 2026
CVE-2026-79097
8.8 HIGH

Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79083
7.5 HIGH

Improper enforcement of behavioral workflow in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially …

Aug 25, 2026
CVE-2026-79073
8.8 HIGH

Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a …

Aug 25, 2026
CVE-2026-79072
8.1 HIGH

Improper state validation in Performance in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-79071
8.3 HIGH

Race condition in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code …

Aug 25, 2026
CVE-2026-79069
8.8 HIGH

Memory corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79057
8.1 HIGH

Race condition in Start in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker leveraging social engineering to potentially execute arbitrary code …

Aug 25, 2026
CVE-2026-79054
8.3 HIGH

Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code …

Aug 25, 2026
CVE-2026-79048
8.8 HIGH

Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside …

Aug 25, 2026
CVE-2026-79045
8.8 HIGH

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to read memory inside the sandbox via a …

Aug 25, 2026
CVE-2026-79039
8.1 HIGH

Use after free in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79033
8.8 HIGH

Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside …

Aug 25, 2026
CVE-2026-79027
8.1 HIGH

Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network …

Aug 25, 2026
CVE-2026-79020
8.1 HIGH

Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a …

Aug 25, 2026
CVE-2026-79011
8.1 HIGH

UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted …

Aug 25, 2026
CVE-2026-79008
8.3 HIGH

Improper input validation in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to …

Aug 25, 2026
CVE-2026-78999
8.3 HIGH

Improper privilege management in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering …

Aug 25, 2026
CVE-2026-78990
8.8 HIGH

Use after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-78983
8.3 HIGH

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code …

Aug 25, 2026
CVE-2026-78978
8.8 HIGH

Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside …

Aug 25, 2026
CVE-2026-78963
8.8 HIGH

Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a …

Aug 25, 2026
CVE-2026-78956
8.8 HIGH

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via …

Aug 25, 2026
CVE-2026-78952
8.3 HIGH

Out of bounds write in Crashpad in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process …

Aug 25, 2026
CVE-2026-78950
8.8 HIGH

Integer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-78944
8.8 HIGH

Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox …

Aug 25, 2026
CVE-2026-78938
8.8 HIGH

Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-78934
8.3 HIGH

Race condition in ReadAloud in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via …

Aug 25, 2026
CVE-2026-78915
7.5 HIGH

Race condition in Enterprise in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-78913
8.1 HIGH

Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted …

Aug 25, 2026
CVE-2026-78911
8.3 HIGH

Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to …

Aug 25, 2026
CVE-2026-78910
8.8 HIGH

Buffer overflow in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-78906
7.5 HIGH

Race condition in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-78905
8.8 HIGH

Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-78901
7.5 HIGH

Race condition in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-78899
8.8 HIGH

Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted …

Aug 25, 2026
CVE-2026-78892
7.1 HIGH

Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a local attacker to bypass system access restrictions via a local …

Aug 25, 2026
CVE-2026-78891
8.8 HIGH

Buffer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML …

Aug 25, 2026
CVE-2026-75465
7.5 HIGH

The /api.php/user/get_list endpoint in Maccms v10 v2026.1000.4055 is vulnerable to an Incorrect Access Control issue. The interface fails to perform any authentication or authorization checks. …

Aug 25, 2026
CVE-2026-65105
8.1 HIGH

NVIDIA NemoClaw for Linux contains a vulnerability in its inference server setup, where a remote attacker may access the inference service without authentication. A successful …

Aug 25, 2026
CVE-2026-65099
7.8 HIGH

NVIDIA NemoClaw for Linux contains a vulnerability in its command-line interface, where an attacker could cause OS command injection. A successful exploit of this vulnerability …

Aug 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.