Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

153,552 CVEs · Medium severity

CVEs (153,552, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 251–275 of 153,552 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-11194 MEDIUM 6.5 2026-06-04 Inappropriate implementation in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium secur…
CVE-2026-11195 MEDIUM 6.5 2026-06-04 Inappropriate implementation in MHTML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross…
CVE-2026-11196 MEDIUM 6.5 2026-06-04 Type Confusion in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted XML fi…
CVE-2026-11197 MEDIUM Patched 6.5 2026-06-04 Insufficient policy enforcement in Workers in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass same origin …
CVE-2026-11186 MEDIUM Patched 6.1 2026-06-04 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (C…
CVE-2026-11187 MEDIUM Patched 6.3 2026-06-04 Inappropriate implementation in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium …
CVE-2026-11189 MEDIUM 6.5 2026-06-04 Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to …
CVE-2026-11181 MEDIUM 6.3 2026-06-04 Inappropriate implementation in Media Session in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chrom…
CVE-2026-11182 MEDIUM 6.5 2026-06-04 Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security …
CVE-2026-11183 MEDIUM Patched 6.5 2026-06-04 Out of bounds read in GWP-ASan in Google Chrome prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from process memory via a malici…
CVE-2026-11184 MEDIUM Patched 6.3 2026-06-04 Insufficient policy enforcement in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chrom…
CVE-2026-11174 MEDIUM Patched 5.3 2026-06-04 Inappropriate implementation in Site Isolation in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site iso…
CVE-2026-11176 MEDIUM Patched 6.5 2026-06-04 Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium securit…
CVE-2026-11178 MEDIUM Patched 4.3 2026-06-04 Insufficient policy enforcement in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (…
CVE-2026-11180 MEDIUM Patched 6.5 2026-06-04 Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security …
CVE-2026-11166 MEDIUM Patched 6.8 2026-06-04 Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (C…
CVE-2026-11168 MEDIUM Patched 6.5 2026-06-04 Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially …
CVE-2026-11156 MEDIUM Patched 4.3 2026-06-04 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security …
CVE-2026-11157 MEDIUM Patched 5.4 2026-06-04 Script injection in Accessibility in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary scri…
CVE-2026-11159 MEDIUM Patched 4.3 2026-06-04 Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11160 MEDIUM Patched 6.5 2026-06-04 Out of bounds read in Input in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a…
CVE-2026-11161 MEDIUM Patched 4.3 2026-06-04 Inappropriate implementation in DataTransfer in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium …
CVE-2026-11162 MEDIUM Patched 4.3 2026-06-04 Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security …
CVE-2026-11148 MEDIUM Patched 6.5 2026-06-04 Inappropriate implementation in Payments in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to leak cross-origin data via a crafted HTML page. (Chr…
CVE-2026-11150 MEDIUM Patched 6.1 2026-06-04 Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (C…