CVE tracker
367 subscribers
5.02K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-17739 - Google Chrome Extensions Insufficient Policy Enforcement Vulnerability

CVE ID :CVE-2026-17739
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary scripts or HTML (UXSS) via a crafted Chrome Extension. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17740 - Google Chrome ANGLE Uninitialized Use Vulnerability

CVE ID :CVE-2026-17740
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17741 - Google Chrome for Android WebView Sandbox Escape

CVE ID :CVE-2026-17741
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17742 - Google Chrome Payments Cross-Origin Data Leak

CVE ID :CVE-2026-17742
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient policy enforcement in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17743 - Google Chrome ControlledFrame Same-Origin Policy Bypass

CVE ID :CVE-2026-17743
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient policy enforcement in ControlledFrame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17744 - Google Chrome File Input Sandbox Escape

CVE ID :CVE-2026-17744
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Inappropriate implementation in File Input in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17745 - Google Chrome Skia Out-of-Bounds Read

CVE ID :CVE-2026-17745
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17746 - Use after free in GPU in Google Chrome on Mac prio

CVE ID :CVE-2026-17746
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Use after free in GPU in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17747 - Insufficient validation of untrusted input in Paym

CVE ID :CVE-2026-17747
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient validation of untrusted input in Payments in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17748 - Inappropriate implementation in Extensions in Goog

CVE ID :CVE-2026-17748
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17749 - Insufficient validation of untrusted input in Exte

CVE ID :CVE-2026-17749
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17750 - Use after free in ANGLE in Google Chrome prior to

CVE ID :CVE-2026-17750
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17751 - Inappropriate implementation in AdFilter in Google

CVE ID :CVE-2026-17751
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Inappropriate implementation in AdFilter in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17752 - Use after free in Views in Google Chrome on Mac pr

CVE ID :CVE-2026-17752
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Use after free in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-17753 - Inappropriate implementation in Autofill in Google

CVE ID :CVE-2026-17753
Published : July 30, 2026, 12:19 a.m. | 42 minutes ago
Description :Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18013 - Google Chrome for iOS UI Spoofing Vulnerability

CVE ID :CVE-2026-18013
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18014 - Google Chrome DevTools Navigation Restriction Bypass

CVE ID :CVE-2026-18014
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a malicious file. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18015 - Google Chrome Tint Sandbox Escape Vulnerability

CVE ID :CVE-2026-18015
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Inappropriate implementation in Tint in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18016 - Google Chrome for iOS UI Spoofing Vulnerability

CVE ID :CVE-2026-18016
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18017 - Google Chrome Dawn Use-After-Free Vulnerability

CVE ID :CVE-2026-18017
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Use after free in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18018 - Google Chrome Updater UI Spoofing Vulnerability

CVE ID :CVE-2026-18018
Published : July 30, 2026, 1:17 a.m. | 3 hours, 45 minutes ago
Description :Inappropriate implementation in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform UI spoofing via a malicious file. (Chromium security severity: Low)
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...