91,785 indexed

CVECVE vulnerabilities

91,785 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.

Showing 1,701–1,750 of 91,785 · page 35 of 1836

IDTitleSummary
CVE-2026-95328CVE-2026-95328
CVSS 6.5google
Confused deputy in Mobile in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker leveraging social engineering to obtain sensitive info…
CVE-2026-95327CVE-2026-95327
CVSS 6.5google
Information leak in Networking in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromi…
CVE-2026-95326CVE-2026-95326
CVSS 8.4google
Incomplete cleanup in Bluetooth in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to bypass system access restric…
CVE-2026-95325CVE-2026-95325
CVSS 9.6google
Use after free in ANGLE in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a craft…
CVE-2026-95324CVE-2026-95324
CVSS 3.4google
Uninitialized resource in GPU in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to read memory outside…
CVE-2026-95323CVE-2026-95323
CVSS 5.4google
UI misrepresentation in Chromium in Google Chrome on on iOS prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to spoof address bar…
CVE-2026-95322CVE-2026-95322
CVSS 8.3google
Out of bounds write in GPU in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to execute …
CVE-2026-95321CVE-2026-95321
CVSS 5.4google
UI misrepresentation in Payments in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to spoof UI elements via a crafted HTML page. …
CVE-2026-95320CVE-2026-95320
CVSS 5.4google
Missing authorization in Navigation in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to spoof address…
CVE-2026-9532CVE-2026-9532
CVSS 6.3
A security vulnerability has been detected in Totolink CA750-PoE 6.2c.510. The affected element is the function setUploadUserData of the file /cgi-bin/cstecgi.…
CVE-2026-95319CVE-2026-95319
CVSS 8.3google
Use after free in Printing in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to potentially execute ar…
CVE-2026-95318CVE-2026-95318
CVSS 9.6google
Buffer overflow in Video in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a craf…
CVE-2026-95317CVE-2026-95317
CVSS 3.1google
Incorrect authorization in MediaCapture in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to obtain cross-origin …
CVE-2026-95316CVE-2026-95316
CVSS 2.9google
Unchecked return value in Performance in Google Chrome prior to 154.0.8037.57 allowed a local attacker to potentially read memory via a local program. (Chromiu…
CVE-2026-95315CVE-2026-95315
CVSS 7.8google
Use after free in Aura in Google Chrome prior to 154.0.8037.57 allowed a local attacker to potentially execute arbitrary code outside the sandbox via UI Intera…
CVE-2026-95314CVE-2026-95314
CVSS 8.1google
Incorrect authorization in HID in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass system acce…
CVE-2026-95313CVE-2026-95313
CVSS 9.6google
Use after free in Fullscreen in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a …
CVE-2026-95312CVE-2026-95312
CVSS 3.1google
Information leak in Passwords in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to obtain cross-origin…
CVE-2026-95311CVE-2026-95311
CVSS 9.6google
Free of non-heap memory in Fonts in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to potentially execute arbitra…
CVE-2026-95310CVE-2026-95310
CVSS 9.6google
Use after free in AdFilter in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML p…
CVE-2026-9531CVE-2026-9531
CVSS 6.3
A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi-bin/cstecgi.cgi of the component Setti…
CVE-2026-95309CVE-2026-95309
CVSS 5.4google
UI misrepresentation in Mobile in Google Chrome on on iOS prior to 154.0.8037.57 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chrom…
CVE-2026-95308CVE-2026-95308
CVSS 3.4google
Integer overflow in Metrics in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to potentially read memo…
CVE-2026-95307CVE-2026-95307
CVSS 5.4google
UI misrepresentation in ExtensionsMenu in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to spoof UI elements via…
CVE-2026-95306CVE-2026-95306
CVSS 8.8google
Type confusion in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (C…
CVE-2026-95305CVE-2026-95305
CVSS 4.8google
UI misrepresentation in Chromoting in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to spoof UI elements via cra…
CVE-2026-95304CVE-2026-95304
CVSS 8.8google
Out of bounds write in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML pag…
CVE-2026-95303CVE-2026-95303
CVSS 6.5google
Incomplete cleanup in SmartCard in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to bypass system access restric…
CVE-2026-95302CVE-2026-95302
CVSS 2.9google
Incorrect authorization in WebAPKs in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker to obtain cross-origin data via a co-installe…
CVE-2026-95301CVE-2026-95301
CVSS 8.1google
Missing authorization in Extensions in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass site i…
CVE-2026-95300CVE-2026-95300
CVSS 4.8google
Missing authorization in DevTools in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to bypass system access restr…
CVE-2026-9530CVE-2026-9530
CVSS 3.3
A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_section of the file src/decode.c of the co…
CVE-2026-95299CVE-2026-95299
CVSS 9.6google
Use after free in GPU in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. …
CVE-2026-95298CVE-2026-95298
CVSS 7.8google
Use after free in Browser in Google Chrome prior to 154.0.8037.57 allowed a local attacker to potentially execute arbitrary code outside the sandbox via UI Int…
CVE-2026-95297CVE-2026-95297
CVSS 6.5google
Missing authorization in Contextual Tasks in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to bypass web origin policy via a crafted HTML page…
CVE-2026-95296CVE-2026-95296
CVSS 4.3google
Missing authorization in Core in Google Chrome on on Mac prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to obtain cross-origin …
CVE-2026-95295CVE-2026-95295
CVSS 4.6google
Information leak in Mobile in Google Chrome on on iOS prior to 154.0.8037.57 allowed a local attacker to leak sensitive information via physical access. (Chrom…
CVE-2026-95294CVE-2026-95294
CVSS 5.4google
UI misrepresentation in Browser in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to spoof UI elements via a craf…
CVE-2026-95293CVE-2026-95293
CVSS 4.7google
Uninitialized resource in GPU in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Ch…
CVE-2026-95292CVE-2026-95292
CVSS 4.8google
Incorrect authorization in Safebrowsing in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to bypass system access restrictions via crafted netw…
CVE-2026-95291CVE-2026-95291
CVSS 5.4google
UI misrepresentation in SecurityIndicators in Google Chrome on on iOS prior to 154.0.8037.57 allowed a remote attacker to spoof address bar via a crafted HTML …
CVE-2026-95290CVE-2026-95290
CVSS 5.4google
Missing authorization in NFC in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass system access…
CVE-2026-9529CVE-2026-9529
CVSS 3.3
A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the function match_BLOCK_HEADER of the file dwggrep.c of the component …
CVE-2026-95289CVE-2026-95289
CVSS 4.3google
Incorrect authorization in Scroll in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to obtain cross-origin data v…
CVE-2026-95288CVE-2026-95288
CVSS 5.4google
UI misrepresentation in Mobile in Google Chrome on on iOS prior to 154.0.8037.57 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chrom…
CVE-2026-95287CVE-2026-95287
CVSS 5.4google
Missing authorization in Navigation in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass site i…
CVE-2026-95286CVE-2026-95286
CVSS 8.8google
Type confusion in Bindings in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML pa…
CVE-2026-95285CVE-2026-95285
CVSS 8.4google
Missing authorization in WebView in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to by…
CVE-2026-95284CVE-2026-95284
CVSS 9.6google
Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a cr…
CVE-2026-95283CVE-2026-95283
CVSS 9.6google
Buffer overflow in Tint in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandb…
Sourced from NVD + CISA KEV + FIRST EPSS. Curated by Adam Lundqvist, Founder at SQUR.