โŒ‚

๐Ÿž CVE Tracking and Search

Search and filter Common Vulnerabilities and Exposures

← Dashboard CVE Search Exploitation Radar Breaches Trends Industries Vendors MITRE ATT&CK MITRE ATLAS Threat Actors Attack-Tools Alerts Investigations
๐Ÿ”Ž Search & Filters
Search: Time Range:
Sources:
๐Ÿ“š Intelligence Coverage the corpus behind every search on this page
380,160+
CVEs Tracked
380,160
Exploit Intel
362,085
EPSS Scored
5,297
CISA KEV
2,704
Metasploit Modules
30,390
ExploitDB Entries
61
MITRE ATT&CK Maps
๐Ÿšจ Exploitation Status within the current filter · click a card to jump to it
0
Actively Exploited
2
CISA KEV
19
PoC Available
0
Zero-Days
8
Recent Discoveries
1
Most Mentioned
๐Ÿ“Š CVE Severity Distribution last 30 days
๐Ÿž Results 1,399 CVEs in the last 30 days · showing 1-50
CVE-2025-0611 HIGH CVSS: 8.2 EPSS: 0.4% CWE-122 T1203
Object corruption in V8 in Google Chrome prior to 132.0.6834.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published: 2025-01-22
Mentioned in 1 article(s):
Chromium: CVE-2025-0611 Object corruption in V8
MSRC Security Update Guide
CVE-2026-21589 UNKNOWN RECENT DISCOVERY
h3. Summary This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center. Crowd Data Center, Crucible and Fisheye. This Arbitrary File Access vulnerability allows an unauthenticated attacker to access specific files within the web application root directory in affected versions. Exploitation requires prior knowledge of the target file's exact name and path; this vulnerability does not allow attackers to enumerate or list directory contents.ย In some configurations, there may be some sensitive files that make this highly severe.ย ย  h3. Context This vulnerability allows an unauthenticated remote attacker to access specific files within the web application root directory in affected versions. h3. Details: * The vulnerability must be addressed for affected versions of: Bitbucket Data Center, introduced in version >= 4.6.0, fix versions: 9.4.26, 10.2.8, 10.5.1 Confluence Data Center, introduced in version >= 5.10.0, fix versions 9.2.26, 10.2.19 Crowd Data Center, introduced in version >= 2.11.0, fix versions 6.3.7, 7.0.3, 7.1.1, 7.2.4 Jira Software Data Center, introduced in version >= 7.1.0, fix versions 9.12.40, 10.3.26, 11.3.12 Jira Service Management Data Center, introduced in version >= 3.1.0, fix versions 5.12.40, 10.3.26, 11.3.12 Bamboo Data Center >= 7.0.1, fix versions 10.2.24, 12.1.12 Crucible, fix versions 4.9.15 Fisheye, fix version 4.9.15 * Exploitation requires prior knowledge of the target file's exact name and path. * The vulnerability does not include the capability to enumerate or list directory contents.
Published: 2026-10-05
Mentioned in 2 article(s):
Atlassian warns of critical file-access flaw in Jira, Confluence
BleepingComputer
Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products
The Hacker News
CVE-2026-61500 CRITICAL CVSS: 9.8 EPSS: 1.0% VulnCheck KEV PoC Available CWE-338
Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-cryptographic Math.random() generator and discloses outputs of the same generator to unauthenticated clients during login. A remote attacker can collect a small number of login responses, reconstruct the generator's state, recover the signing key, and forge a valid administrator session cookie, leading to full administrative access and remote code execution via the server_code configuration feature.
Published: 2026-07-13
Mentioned in 3 article(s):
Rejetto HFS servers now actively scanned for critical RCE flaw
BleepingComputer
Exploitation Hits Rejetto HFS Vulnerability Discovered by AI
SecurityWeek
Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
The Hacker News
CVE-2026-96940 HIGH CVSS: 8.8 RECENT DISCOVERY CWE-1390
Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network.
Published: 2026-10-02
Mentioned in 2 article(s):
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes
The Hacker News
CVE-2026-96940 Microsoft Exchange Server Elevation of Privilege Vulnerability
MSRC Security Update Guide
CVE-2026-88779 UNKNOWN EPSS: 0.3% VulnCheck KEV Weaponized RECENT DISCOVERY
Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS, and before 13.1-37.282; Gateway: before 14.1-73.41 and before 13.1-64.28.
Published: 2026-10-04
Mentioned in 4 article(s):
New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
The Hacker News
Exploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days Earlier
SecurityWeek
Citrix patches NetScaler SAML zero-day exploited in attacks
BleepingComputer
CVE-2026-88779 - Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Recent KEV Entries
CVE-2025-10502 HIGH CVSS: 8.8 EPSS: 0.3% CWE-122 T1203
Heap buffer overflow in ANGLE in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: High)
Published: 2025-09-24
Mentioned in 1 article(s):
Chromium: CVE-2025-10502 Heap buffer overflow in ANGLE
MSRC Security Update Guide
CVE-2026-63688 CRITICAL CVSS: 10.0 RECENT DISCOVERY CWE-306 T1078
Dell Container Storage Modules (CSM), versions prior to v1.18.0, contains a Missing Authentication for Critical Function vulnerability in the csm-authorization-storage gRPC server. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to unauthorized access to storage backend administrator credentials for all registered storage arrays.
Published: 2026-10-06
Mentioned in 1 article(s):
Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes
The Hacker News
CVE-2026-104286 CRITICAL CVSS: 9.8 VulnCheck KEV Weaponized RECENT DISCOVERY CWE-22 T1083
An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through 8.0.1, FortiMail 7.6.0 through 7.6.6, FortiMail 7.4.0 through 7.4.8, FortiMail 7.2.0 through 7.2.9 may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.
Published: 2026-10-01
Mentioned in 4 article(s):
Exploited Fortinet FortiMail Zero-Day Calls for Urgent Action
SecurityWeek
Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes
The Hacker News
Fortinet warns of critical FortiMail flaw exploited in zero-day attacks
BleepingComputer
CVE-2026-104286 - Fortinet FortiMail Path Traversal Vulnerability
Recent KEV Entries
CVE-2026-102489 CRITICAL CVSS: 9.8 EPSS: 0.6% VulnCheck KEV Weaponized RECENT DISCOVERY CWE-384
Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as the zammad user. The vulnerability is also present in version 7.0.0 to version 7.1.3, but not exploitable due to environment conditions.
Published: 2026-09-30
Mentioned in 2 article(s):
CVE-2026-102489 - Zammad GmbH Zammad Session Fixation Vulnerability
Recent KEV Entries
CVE-2026-102490 - Zammad GmbH Zammad Improper Privilege Management Vulnerability
Recent KEV Entries
CVE-2026-102490 CRITICAL CVSS: 9.8 EPSS: 0.3% VulnCheck KEV Weaponized RECENT DISCOVERY CWE-269 T1068
All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
Published: 2026-09-30
Mentioned in 2 article(s):
CVE-2026-102489 - Zammad GmbH Zammad Session Fixation Vulnerability
Recent KEV Entries
CVE-2026-102490 - Zammad GmbH Zammad Improper Privilege Management Vulnerability
Recent KEV Entries
CVE-2026-73570 HIGH CVSS: 8.9 EPSS: 11.7% VulnCheck KEV Weaponized CWE-78 T1059
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.
Published: 2026-08-13
Mentioned in 2 article(s):
Zimbra Vulnerability Exploited in the Wild Prior to Public Disclosure
SecurityWeek
Attackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication Secrets
The Hacker News
CVE-2026-88771 CRITICAL CVSS: 9.8 EPSS: 1.1% VulnCheck KEV PoC Available CWE-20 T1190
Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading toย an unauthenticated attacker to execute arbitrary commands.
Published: 2026-09-27
Mentioned in 7 article(s):
Suspected State Hackers Exploited Citrix NetScaler for Weeks. 50,000 Devices May Still Be Exposed.
DataBreaches.Net
Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks
SecurityWeek
Defending Against Active Exploitation of Citrix NetScaler ADC and Gateway Appliances
Threat Intelligence
Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild
Palo Alto Unit 42
Citrix Confirms 2 NetScaler Zero-Days After Admins Pulled the Plug
SecurityWeek
CVE-2026-88772 HIGH CVSS: 8.1 EPSS: 1.3% VulnCheck KEV PoC Available MOST MENTIONED (8 articles) CWE-119 T1203
Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23ย leading to Remote Code Execution or Denial of Service
Published: 2026-09-27
Mentioned in 8 article(s):
Suspected State Hackers Exploited Citrix NetScaler for Weeks. 50,000 Devices May Still Be Exposed.
DataBreaches.Net
Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks
SecurityWeek
Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution
The Hacker News
Hackers exploit Citrix NetScaler zero-day to deploy web shells
BleepingComputer
Defending Against Active Exploitation of Citrix NetScaler ADC and Gateway Appliances
Threat Intelligence
CVE-2026-76504 CRITICAL CVSS: 9.8 VulnCheck KEV Weaponized RECENT DISCOVERY CISA KEV CWE-177
A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request to bypass an authentication rule that is intended to restrict access to a specific API endpoint. An attacker could exploit this vulnerability by sending a crafted HTTP request to the API of the affected system. A successful exploit could allow the attacker to bypass authentication and gain access to the API as the admin user.
Published: 2026-09-30
Mentioned in 4 article(s):
CISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEV
The Hacker News
Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager
The Hacker News
Cisco warns of new SD-WAN zero-day exploited in attacks
BleepingComputer
CVE-2026-76504 - Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability
Recent KEV Entries
CVE-2026-86950 HIGH CVSS: 8.8 EPSS: 1.2% VulnCheck KEV PoC Available CWE-787 T1203
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
Published: 2026-09-28
Mentioned in 5 article(s):
Apple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery Path
The Hacker News
Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
Dark Reading
Apple Patches Meta-Reported Zero-Day Linked to โ€˜Extremely Sophisticated Attackโ€™
SecurityWeek
CVE-2026-86950 - Apple Multiple Products Out-of-Bounds Write Vulnerability
Recent KEV Entries
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
The Hacker News
CVE-2025-3248 CRITICAL CVSS: 9.8 EPSS: 100.0% VulnCheck KEV Weaponized Ransomware Metasploit ExploitDB CWE-306 CWE-94 CWE-306 T1059 T1078
Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to execute arbitrary code.
Published: 2025-04-07
Mentioned in 1 article(s):
Vulnerability Discovery and Exploitation Trends in the AI Era
Threat Intelligence
CVE-2026-1731 CRITICAL CVSS: 9.8 EPSS: 90.9% VulnCheck KEV Weaponized Metasploit CWE-78 T1059
BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.
Published: 2026-02-06
Mentioned in 1 article(s):
Vulnerability Discovery and Exploitation Trends in the AI Era
Threat Intelligence
CVE-2026-42271 HIGH CVSS: 8.8 EPSS: 92.6% VulnCheck KEV Weaponized Metasploit CWE-77 CWE-78 CWE-78 T1059
LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before version 1.83.7, two endpoints used to preview an MCP server before saving it โ€” POST /mcp-rest/test/connection and POST /mcp-rest/test/tools/list โ€” accepted a full server configuration in the request body, including the command, args, and env fields used by the stdio transport. When called with a stdio configuration, the endpoints attempted to connect, which spawned the supplied command as a subprocess on the proxy host with the privileges of the proxy process. The endpoints were gated only by a valid proxy API key, with no role check. Any authenticated user โ€” including holders of low-privilege internal-user keys โ€” could therefore run arbitrary commands on the host. This issue has been patched in version 1.83.7.
Published: 2026-05-08
Mentioned in 1 article(s):
Vulnerability Discovery and Exploitation Trends in the AI Era
Threat Intelligence
CVE-2026-5027 HIGH CVSS: 8.8 EPSS: 4.8% VulnCheck KEV PoC Available ExploitDB CWE-22 T1083
The 'POST /api/v2/files' endpoint does not sanitize the 'filename' parameter from the multipart form data, allowing an attacker to write files to arbitrary locations on the filesystem using path traversal sequences ('../').
Published: 2026-03-27
Mentioned in 1 article(s):
Vulnerability Discovery and Exploitation Trends in the AI Era
Threat Intelligence
CVE-2026-91728 CRITICAL CVSS: 9.6 EPSS: 0.4% CWE-190 T1203
Integer overflow in V8 in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-15
Mentioned in 1 article(s):
Chromium CVE-2026-91728: Integer overflow
MSRC Security Update Guide
CVE-2026-91745 HIGH CVSS: 8.8 EPSS: 0.3% CWE-416 T1203
Use after free in V8 in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-15
Mentioned in 1 article(s):
Chromium CVE-2026-91745: Use after free
MSRC Security Update Guide
CVE-2026-88778 HIGH CVSS: 7.5 EPSS: 0.4% CWE-342
Predictable exact value from previous values vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23.
Published: 2026-09-27
Mentioned in 1 article(s):
Defending Against Active Exploitation of Citrix NetScaler ADC and Gateway Appliances
Threat Intelligence
CVE-2026-35273 CRITICAL CVSS: 9.8 EPSS: 9.4% VulnCheck KEV Weaponized Ransomware CWE-306 T1078
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
Published: 2026-06-11
Mentioned in 4 article(s):
Google Warns of ShinyHuntersโ€™ Fresh Oracle PeopleSoft Campaign
SecurityWeek
ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks
BleepingComputer
Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells
The Hacker News
ShinyHunters Renewed Mass Exploitation Campaign Targeting Oracle PeopleSoft
Threat Intelligence
CVE-2026-65660 HIGH CVSS: 8.8 EPSS: 2.1% VulnCheck KEV PoC Available CWE-94 T1059
Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Published: 2026-08-11
Mentioned in 4 article(s):
Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks
SecurityWeek
SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild
The Hacker News
CVE-2026-65660 - Microsoft SharePoint Code Injection Vulnerability
Recent KEV Entries
SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE
The Hacker News
CVE-2026-5430 CRITICAL CVSS: 10.0 EPSS: 0.6% VulnCheck KEV PoC Available CWE-347 T1556
The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with an unsupported algorithm, which is then incorrectly validated, leading to unauthorized access. Successful exploitation of this vulnerability may result in unauthorized access to the system, including the potential compromise of administrative accounts and full account takeover. The CVSS score is adjusted to 9.8 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) in single-tenant deployments, reflecting that the impact is contained within a single security authority boundary.
Published: 2026-08-06
Mentioned in 5 article(s):
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
BleepingComputer
WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV
The Hacker News
CVE-2026-5430 - WSO2 Multiple Products Path Traversal Vulnerability
Recent KEV Entries
Enterprises Warned of Attacks Exploiting WSO2 Vulnerability
SecurityWeek
Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens
The Hacker News
CVE-2026-95281 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95281: Buffer overflow in ANGLE
MSRC Security Update Guide
CVE-2026-95283 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in Tint in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95283: Buffer overflow in Tint
MSRC Security Update Guide
CVE-2026-95284 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95284: Buffer overflow in ANGLE
MSRC Security Update Guide
CVE-2026-95299 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-416 T1203
Use after free in GPU in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95299: Use after free in GPU
MSRC Security Update Guide
CVE-2026-95310 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-416 T1203
Use after free in AdFilter in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95310: Use after free in AdFilter
MSRC Security Update Guide
CVE-2026-95311 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-590
Free of non-heap memory in Fonts in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95311: Free of non-heap memory in Fonts
MSRC Security Update Guide
CVE-2026-95318 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in Video in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95318: Buffer overflow in Video
MSRC Security Update Guide
CVE-2026-95325 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-416 T1203
Use after free in ANGLE in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95325: Use after free in ANGLE
MSRC Security Update Guide
CVE-2026-95329 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-787 T1203
Out of bounds write in WebGL in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95329: Out of bounds write in WebGL
MSRC Security Update Guide
CVE-2026-95331 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-787 T1203
Out of bounds write in ANGLE in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95331: Out of bounds write in ANGLE
MSRC Security Update Guide
CVE-2026-95339 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-416 T1203
Use after free in ServiceWorker in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95339: Use after free in ServiceWorker
MSRC Security Update Guide
CVE-2026-95347 CRITICAL CVSS: 9.6 EPSS: 0.4% CWE-416 T1203
Use after free in Updater in Google Chrome on on Mac prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95347: Use after free in Updater
MSRC Security Update Guide
CVE-2026-95349 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in WebGL in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95349: Buffer overflow in WebGL
MSRC Security Update Guide
CVE-2026-95350 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-122 T1203
Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95350: Buffer overflow in ANGLE
MSRC Security Update Guide
CVE-2026-95356 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-416 T1203
Use after free in WindowDialog in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95356: Use after free in WindowDialog
MSRC Security Update Guide
CVE-2026-95357 CRITICAL CVSS: 9.6 EPSS: 0.5% CWE-787 T1203
Out of bounds write in GPU in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95357: Out of bounds write in GPU
MSRC Security Update Guide
CVE-2026-95282 HIGH CVSS: 8.8 EPSS: 0.4% CWE-416 T1203
Use after free in Platform in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95282: Use after free in Platform
MSRC Security Update Guide
CVE-2026-95286 HIGH CVSS: 8.8 EPSS: 0.5% CWE-843
Type confusion in Bindings in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95286: Type confusion in Bindings
MSRC Security Update Guide
CVE-2026-95304 HIGH CVSS: 8.8 EPSS: 0.4% CWE-787 T1203
Out of bounds write in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95304: Out of bounds write in V8
MSRC Security Update Guide
CVE-2026-95306 HIGH CVSS: 8.8 EPSS: 0.5% CWE-843
Type confusion in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95306: Type confusion in V8
MSRC Security Update Guide
CVE-2026-95343 HIGH CVSS: 8.8 EPSS: 0.5% CWE-416 T1203
Use after free in WebAudio in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95343: Use after free in WebAudio
MSRC Security Update Guide
CVE-2026-95345 HIGH CVSS: 8.8 EPSS: 0.4% CWE-416 T1203
Use after free in Actor in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95345: Use after free in Actor
MSRC Security Update Guide
CVE-2026-95353 HIGH CVSS: 8.8 EPSS: 0.4% CWE-416 T1203
Use after free in Bindings in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95353: Use after free in Bindings
MSRC Security Update Guide
CVE-2026-95362 HIGH CVSS: 8.8 EPSS: 0.2% CWE-352 T1189
Cross-site request forgery in DevTools in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95362: Cross-site request forgery in DevTools
MSRC Security Update Guide
CVE-2026-95365 HIGH CVSS: 8.8 EPSS: 0.5% CWE-843
Type confusion in IndexedDB in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-09-29
Mentioned in 1 article(s):
Chromium CVE-2026-95365: Type confusion in IndexedDB
MSRC Security Update Guide