CVE tracker
332 subscribers
4.6K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-48783 - Postiz has an unauthenticated billing-enforcement bypass via /public/modify-subscription

CVE ID :CVE-2026-48783
Published : June 16, 2026, 9:38 p.m. | 22 minutes ago
Description :Postiz is an AI social media scheduling tool. Versions prior to 2.21.8 contained an unauthenticated endpoint that accepted a signed token and applied subscription-enforcement side effects to the organization referenced in that token's claims, without verifying the token's intended purpose. The endpoint, /public/modify-subscription, could not change the persisted subscription tier, but it did execute enforcement-related side effects on the caller's own organization, including adjusting team-member enablement state, disabling integrations exceeding the asserted plan's limits, and resetting the scheduled-post cron when the asserted plan was the free tier. Impact is limited to the attacker's own organization and cannot be redirected at other tenants through this endpoint. This issue has been fixed in version 2.21.8.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-47277 - Runtipi: Unauthenticated arbitrary file read through app-store logo symlinks

CVE ID :CVE-2026-47277
Published : June 16, 2026, 9:43 p.m. | 17 minutes ago
Description :Runtipi is a personal homeserver orchestrator. In versions 4.9.1 through 4.9.3, Runtipi serves marketplace app logos from files inside cloned app-store repositories through an unauthenticated endpoint, which leads to arbitrary file read through app-store logo symlinks. The path guard checks only the lexical path before Node reads the file, so a Git app store that contains metadata/logo.jpg as a symbolic link can cause Runtipi to read and return the symlink target. Because the endpoint is public and the symlink target may point outside the cloned repository, this can expose local files from the Runtipi container such as /data/.env, /data/state/seed, logs, or application files. This can disclose JWT secrets, service credentials, local configuration, and operational logs depending on the instance. The issue has been fixed in version 4.10.0.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12447 - Google Chrome heap buffer overflow

CVE ID :CVE-2026-12447
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Heap buffer overflow in WebRTC in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12448 - Google Chrome Android WebView Privilege Escalation

CVE ID :CVE-2026-12448
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12449 - Google Chrome Chromoting Use-After-Free Privilege Escalation

CVE ID :CVE-2026-12449
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.155 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12450 - Google Chrome Media Information Disclosure

CVE ID :CVE-2026-12450
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12451 - Google Chrome Use-after-free Sandbox Escape

CVE ID :CVE-2026-12451
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in DigitalCredentials in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12452 - Google Chrome Use-After-Free

CVE ID :CVE-2026-12452
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in Downloads in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12453 - Google Chrome Same Origin Policy Bypass

CVE ID :CVE-2026-12453
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Insufficient validation of untrusted input in Input in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12454 - Google Chrome Sandbox Escape via Race Condition

CVE ID :CVE-2026-12454
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Race in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12455 - Google Chrome Use After Free

CVE ID :CVE-2026-12455
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in Tab Strip in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12456 - Google Chrome Extension Same Origin Policy Bypass

CVE ID :CVE-2026-12456
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.155 allowed an attacker who convinced a user to install a malicious extension to bypass same origin policy via a crafted Chrome Extension. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12457 - Google Chrome Improper Extension Implementation Site Isolation Bypass

CVE ID :CVE-2026-12457
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12458 - Google Chrome Password Leak Vulnerability

CVE ID :CVE-2026-12458
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12459 - Google Chrome UXSS

CVE ID :CVE-2026-12459
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Serial in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12460 - Google Chrome File System Access Policy Bypass

CVE ID :CVE-2026-12460
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Insufficient policy enforcement in File System Access in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted PDF file. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12461 - Google Chrome Out-of-Bounds Read Information Disclosure

CVE ID :CVE-2026-12461
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Out of bounds read in WebRTC in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12462 - Google Chrome Use-After-Free in Media

CVE ID :CVE-2026-12462
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in Media in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12463 - Google Chrome UXSS

CVE ID :CVE-2026-12463
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Inappropriate implementation in Views in Google Chrome on Linux prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12464 - Google Chrome Use After Free Sandbox Escape

CVE ID :CVE-2026-12464
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Use after free in Browser in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-12465 - Google Chrome Sandbox Escape

CVE ID :CVE-2026-12465
Published : June 17, 2026, 1:38 a.m. | 22 minutes ago
Description :Object lifecycle issue in Metrics in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...