CVE tracker
322 subscribers
4.53K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-50292 - libinput: Arbitrary Root Code Execution via Device Group udev Property Injection

CVE ID :CVE-2026-50292
Published : June 4, 2026, 6:16 p.m. | 59 minutes ago
Description :In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
Severity: 7.4 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10950 - Insufficient policy enforcement in Autofill in Goo

CVE ID :CVE-2026-10950
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10951 - Use after free in Autofill in Google Chrome on iOS

CVE ID :CVE-2026-10951
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Autofill in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10952 - Use after free in Chrome for iOS in Google Chrome

CVE ID :CVE-2026-10952
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10953 - Use after free in Core in Google Chrome on Android

CVE ID :CVE-2026-10953
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Core in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10954 - Use after free in Actor in Google Chrome prior to

CVE ID :CVE-2026-10954
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10955 - Type Confusion in ANGLE in Google Chrome on Window

CVE ID :CVE-2026-10955
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Type Confusion in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10956 - Use after free in MimeHandlerView in Google Chrome

CVE ID :CVE-2026-10956
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in MimeHandlerView in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10957 - Use after free in Glic in Google Chrome prior to 1

CVE ID :CVE-2026-10957
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10958 - Use after free in Chrome for iOS in Google Chrome

CVE ID :CVE-2026-10958
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10959 - Use after free in Input in Google Chrome on Androi

CVE ID :CVE-2026-10959
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Input in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10960 - Uninitialized Use in Codecs in Google Chrome prior

CVE ID :CVE-2026-10960
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Uninitialized Use in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10961 - Use after free in Chrome for iOS in Google Chrome

CVE ID :CVE-2026-10961
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10962 - Type Confusion in Media in Google Chrome prior to

CVE ID :CVE-2026-10962
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Type Confusion in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10963 - Integer overflow in V8 in Google Chrome prior to 1

CVE ID :CVE-2026-10963
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10964 - Integer overflow in V8 in Google Chrome prior to 1

CVE ID :CVE-2026-10964
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10965 - Integer overflow in DevTools in Google Chrome prio

CVE ID :CVE-2026-10965
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Integer overflow in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10966 - Inappropriate implementation in Codecs in Google C

CVE ID :CVE-2026-10966
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Inappropriate implementation in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10967 - Use after free in SurfaceCapture in Google Chrome

CVE ID :CVE-2026-10967
Published : June 4, 2026, 11:03 p.m. | 13 minutes ago
Description :Use after free in SurfaceCapture in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10968 - Insufficient validation of untrusted input in Dawn

CVE ID :CVE-2026-10968
Published : June 4, 2026, 11:04 p.m. | 13 minutes ago
Description :Insufficient validation of untrusted input in Dawn in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-10969 - Insufficient validation of untrusted input in Exte

CVE ID :CVE-2026-10969
Published : June 4, 2026, 11:04 p.m. | 13 minutes ago
Description :Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...