Skip to content
← All tracked CVEs

Updated 12:00

last 30 days

933 fixed within SLA

CVEStatusSeveritySummaryReleaseClock startedDeadlineFixedTime to fix
Fixed within SLAMediumChrome Blink flaw lets remote attacker leak cross-origin data via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLALowChrome Android <151.0.7922.72 UI flaw enables cross-origin data leak via crafted pagesecure-packages-26.05Aug 4, 2026Nov 2, 2026Aug 4, 2026same day
Fixed within SLAHighV8 race condition in Chrome <151.0.7922.72 enables remote code execution in sandbox via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome WebCodecs side-channel exposes sensitive process memory via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome prior to 151.0.7922.72 CSS policy bypass leaks cross-origin data via crafted HTML pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Extensions policy flaw allows DAC bypass via crafted domains (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Mac IME pre-151.0.7922.72 flaw allows remote process memory disclosure via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 DevTools policy flaw lets local attacker bypass navigation restrictions via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome Mac Views flaw allows local memory disclosure via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS pre-151.0.7922.72 permits UI spoofing via crafted HTML pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighChrome <151.0.7922.72 Frame implementation allows remote OOB memory access via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 Passwords lacks input validation, enabling UI spoofing by privileged network attackersecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighGoogle Chrome Passwords prior to 151.0.7922.72 allows remote sandbox RCE via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumWebXR uninitialized use leaks process memory in Chrome Android before 151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighUse-after-free in Chrome iOS pre-151.0.7922.72 enables remote heap corruption via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumMac Chrome Views bug allowed local process memory disclosure via crafted HTML prior to 151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS <151.0.7922.72: Incorrect security UI allows remote HTML UI spoofingsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumIncorrect security UI on Chrome Android pre-151.0.7922.72 enables domain spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 SVG bug allows cross-origin data leak via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumBlink UXSS in Chrome <151.0.7922.72 allows remote script/HTML injection via crafted pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Android pre-151.0.7922.72 Session bug allows remote bypass of navigation restrictions via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumInsufficient policy enforcement enables no-referrer bypass via crafted HTML in Chrome iOS <151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Network vulnerability leaked cross-origin data via crafted HTML page pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome pre-151.0.7922.72 Views flaw enables remote UI spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLALowLow-severity CORS flaw in Chrome <151.0.7922.72 enables cross-origin leak via compromised renderersecure-packages-26.05Aug 4, 2026Nov 2, 2026Aug 4, 2026same day
Fixed within SLAHighChrome pre-151.0.7922.72 Scheduling flaw enables sandbox RCE via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumInsufficient input validation in Chrome Payments allows UI spoofing via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumPolicy bypass in Chrome MHTML before 151.0.7922.72 leaks cross-origin datasecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumAndroid Chrome WebView policy enforcement bug allows navigation bypass via crafted HTML before 151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighChrome V8 pre-151.0.7922.72 allows sandbox code execution via malicious extensionsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighGoogle Chrome WebRTC heap buffer overflow enables remote out-of-bounds read via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighChrome Mac Safe Browsing bug pre-151.0.7922.72 allows RCE via malicious filesecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumUninitialized GPU use in Chrome Android pre-151.0.7922.72 leaks cross-origin data via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighChrome V8 type confusion enables sandboxed code execution via malicious extension (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLACriticalChrome <151.0.7922.72 WebSockets use-after-free allows remote sandbox escape via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 Dawn uninitialized use leaks process memory via crafted HTML when renderer compromisedsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumInsufficient Navigation input validation in Chrome <151.0.7922.72 allows UI spoofing post-renderer compromisesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome for iOS <151.0.7922.72 allows navigation restriction bypass via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome <151.0.7922.72 parser flaw allows CSP bypass via crafted HTML pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumCross-origin data leak via SVG side-channel in Google Chrome before 151.0.7922.72 using crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumOmnibox URL spoofing in Chrome for iOS before 151.0.7922.72 via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalChrome Android PiP input validation bug enables sandbox escape post-renderer compromise via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumInsufficient untrusted input validation in Chrome Passwords enables UI spoofing via network traffic (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Android pre-151.0.7922.72 FullScreen flaw enables remote UI spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome DevTools vulnerability before 151.0.7922.72 enables bypass of navigation restrictions via crafted HTML with gesturessecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighHeap buffer overflow in Chrome Codecs enables sandboxed RCE via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome DevTools insufficient validation of untrusted input enabled navigation restriction bypass via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome DOMStorage vulnerability allowed remote cross-origin data leak via crafted HTML page pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Windows DataTransfer use-after-free leaks process memory via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome DevTools navigation restriction bypass via crafted HTML page (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day