Search
1,425 CVEs · published 2026-08-18 to 2026-08-18
CVEs (1,425, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 1–25 of 1,425 (capped at 500)
| CVE ID ↓ | Severity | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-76047 | NONE | — | 2026-08-18 | Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium secu… | |
| CVE-2026-76046 | NONE | — | 2026-08-18 | Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to execute arbitrary code… | |
| CVE-2026-76045 | NONE | — | 2026-08-18 | Use after free in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium s… | |
| CVE-2026-76044 | NONE | — | 2026-08-18 | Race condition in USB in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outs… | |
| CVE-2026-76043 | NONE | — | 2026-08-18 | Incorrect calculation in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromi… | |
| CVE-2026-76042 | NONE | — | 2026-08-18 | Use of uninitialized resource in GPU in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to read memory outside the … | |
| CVE-2026-76041 | NONE | — | 2026-08-18 | Information leak in Skia in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium secur… | |
| CVE-2026-76040 | NONE | — | 2026-08-18 | Use after free in Browser in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the s… | |
| CVE-2026-76039 | NONE | — | 2026-08-18 | Incorrect reference resolution in Core in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to obtain sensitive in… | |
| CVE-2026-76038 | NONE | — | 2026-08-18 | Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium secu… | |
| CVE-2026-76037 | NONE | — | 2026-08-18 | Link following in CredentialProvider in Google Chrome on on Windows prior to 151.0.7922.169 allowed a local attacker to potentially execute arbitrary code outside the sandb… | |
| CVE-2026-76036 | NONE | — | 2026-08-18 | Buffer overflow in Dawn in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML pa… | |
| CVE-2026-76035 | NONE | — | 2026-08-18 | Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a craft… | |
| CVE-2026-76034 | NONE | — | 2026-08-18 | Buffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium… | |
| CVE-2026-76033 | NONE | — | 2026-08-18 | Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to bypass site isolation vi… | |
| CVE-2026-76032 | MEDIUM | 4.3 | 2026-08-18 | Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handler for GET /a/share/link/{Uuid} in idm/share/rest/handler.go reads the w… | |
| CVE-2026-75936 | HIGH | Patched | 7.5 | 2026-08-18 | Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service v… |
| CVE-2026-75935 | HIGH | Patched | 7.5 | 2026-08-18 | Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion bin… |
| CVE-2026-75926 | HIGH | 8.6 | 2026-08-18 | Hugo 0.161.0 placed the Node asset pipelines behind the Node.js permission model so that code running through PostCSS, Babel, or TailwindCSS could not reach the file system… | |
| CVE-2026-75924 | HIGH | 8.7 | 2026-08-18 | A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespace… | |
| CVE-2026-75915 | HIGH | Patched | 7.5 | 2026-08-18 | CodeWhale versions before 0.8.64 contain an environment variable exposure vulnerability in the js_execution tool that fails to scrub parent process environment variables be… |
| CVE-2026-75914 | HIGH | Patched | 7.5 | 2026-08-18 | CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can cr… |
| CVE-2026-75913 | CRITICAL | Patched | 9.3 | 2026-08-18 | CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is … |
| CVE-2026-75912 | HIGH | Patched | 7.4 | 2026-08-18 | CodeWhale versions before 0.8.64 contain an argument injection vulnerability in the git_blame tool that allows attackers to read arbitrary files by injecting git options in… |
| CVE-2026-75911 | HIGH | Patched | 7.8 | 2026-08-18 | CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell c… |