Search

Published: All 7d 30d 90d 12m
Clear
Severity: All Critical High Medium Low

1,425 CVEs · published 2026-08-18 to 2026-08-18

CVEs (1,425, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 1–25 of 1,425 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-76047 NONE — 2026-08-18 Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium secu…
CVE-2026-76046 NONE — 2026-08-18 Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to execute arbitrary code…
CVE-2026-76045 NONE — 2026-08-18 Use after free in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium s…
CVE-2026-76044 NONE — 2026-08-18 Race condition in USB in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outs…
CVE-2026-76043 NONE — 2026-08-18 Incorrect calculation in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromi…
CVE-2026-76042 NONE — 2026-08-18 Use of uninitialized resource in GPU in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to read memory outside the …
CVE-2026-76041 NONE — 2026-08-18 Information leak in Skia in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium secur…
CVE-2026-76040 NONE — 2026-08-18 Use after free in Browser in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the s…
CVE-2026-76039 NONE — 2026-08-18 Incorrect reference resolution in Core in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to obtain sensitive in…
CVE-2026-76038 NONE — 2026-08-18 Type confusion in V8 in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium secu…
CVE-2026-76037 NONE — 2026-08-18 Link following in CredentialProvider in Google Chrome on on Windows prior to 151.0.7922.169 allowed a local attacker to potentially execute arbitrary code outside the sandb…
CVE-2026-76036 NONE — 2026-08-18 Buffer overflow in Dawn in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML pa…
CVE-2026-76035 NONE — 2026-08-18 Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a craft…
CVE-2026-76034 NONE — 2026-08-18 Buffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium…
CVE-2026-76033 NONE — 2026-08-18 Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to bypass site isolation vi…
CVE-2026-76032 MEDIUM 4.3 2026-08-18 Pydio Cells 5.0.0 through 5.0.2 returns share-link details to any authenticated user. The REST handler for GET /a/share/link/{Uuid} in idm/share/rest/handler.go reads the w…
CVE-2026-75936 HIGH Patched 7.5 2026-08-18 Improper handling of highly compressed data in the GZIP auto-decompression handler in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service v…
CVE-2026-75935 HIGH Patched 7.5 2026-08-18 Uncontrolled memory allocation in the binary Ion stream cursor in Amazon ion-java before 1.12.0 might allow remote actors to cause a denial of service via a crafted Ion bin…
CVE-2026-75926 HIGH 8.6 2026-08-18 Hugo 0.161.0 placed the Node asset pipelines behind the Node.js permission model so that code running through PostCSS, Babel, or TailwindCSS could not reach the file system…
CVE-2026-75924 HIGH 8.7 2026-08-18 A flaw was found in managed-serviceaccount. A compromised addon-manager pod, due to its ClusterRole granting excessive permissions, can read any secret across all namespace…
CVE-2026-75915 HIGH Patched 7.5 2026-08-18 CodeWhale versions before 0.8.64 contain an environment variable exposure vulnerability in the js_execution tool that fails to scrub parent process environment variables be…
CVE-2026-75914 HIGH Patched 7.5 2026-08-18 CodeWhale versions before 0.8.64 contain a path traversal vulnerability in the image_analyze tool that fails to canonicalize symlinks before reading files. Attackers can cr…
CVE-2026-75913 CRITICAL Patched 9.3 2026-08-18 CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is &hellip;
CVE-2026-75912 HIGH Patched 7.4 2026-08-18 CodeWhale versions before 0.8.64 contain an argument injection vulnerability in the git_blame tool that allows attackers to read arbitrary files by injecting git options in&hellip;
CVE-2026-75911 HIGH Patched 7.8 2026-08-18 CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell c&hellip;