Skip to content
← All tracked CVEs

Updated 13:00

last 30 days

910 fixed within SLA

CVEStatusSeveritySummaryReleaseClock startedDeadlineFixedTime to fix
Fixed within SLAMediumChrome <151.0.7922.72 CSS bug enables UXSS via crafted HTML pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumPre-151.0.7922.72 Chrome Payments bug leaks cross-origin data via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighPDFium use-after-free enables sandboxed RCE via crafted PDF in Chrome <151.0.7922.72secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome for iOS before 151.0.7922.72 allows UI spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumiOS Chrome <151.0.7922.72: insufficient policy enforcement enables HTML-based discretionary access control bypasssecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumCryptographic flaw in WebAppInstalls allows local sandbox escape via crafted HTML in Android Chrome pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumPre-151.0.7922.72 Chrome Passwords cross-origin data leak via crafted page, UI gesturessecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Cast pre-151.0.7922.72 insufficient input validation leaks cross-origin data on LANsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAHighChrome <151.0.7922.72 WebXR out-of-bounds read enables remote memory disclosuresecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighChrome USB policy enforcement bug (<151.0.7922.72) allows remote privilege escalation via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighInsufficient input validation in Chrome Dawn allows remote sandbox escape via crafted HTML pagesecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumType confusion in Tab allows sandbox escape post-renderer compromise in Chrome Android <151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalGoogle Chrome Mac Crypto bug allows sandbox escape from compromised renderer via crafted HTML pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAHighChrome Mac Updater pre-151.0.7922.72 local OS-level privilege escalation via malicious filesecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighChrome Windows pre-151.0.7922.72: Local privilege escalation via malicious filesecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighChrome Windows Tracing use-after-free allows local privilege escalation via malicious file (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAHighInsufficient input validation in Chrome Updater allows local privilege escalation via malicious file (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLALowAndroid Chrome <151.0.7922.72: Omnibox spoofing via malicious local file; insufficient input validationsecure-packages-26.05Aug 4, 2026Nov 2, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome <151.0.7922.72 favicon implementation leaks cross-origin data via crafted HTML pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome WebNN uninitialized use on Windows <151.0.7922.72 leaks cross-origin data via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Network cross-origin data leak via crafted HTML before 151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalChrome Mac pre-151.0.7922.72 network flaw enables sandbox escape via crafted HTML after renderer compromisesecure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLACriticalDevTools race on Mac Chrome pre-151.0.7922.72 enables sandbox escape from compromised renderersecure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 WebMCP policy flaw enables remote same-origin policy bypass via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 DevTools: compromised renderer injects script/HTML into privileged pagessecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Media Router pre-151.0.7922.72 Same-Origin Policy bypass via crafted HTML by remote attackersecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumPre-151.0.7922.72 Chrome Autofill side-channel leak enables cross-origin exfiltration via compromised renderersecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Permissions bug pre-151.0.7922.72 enables same-origin policy bypass via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS <151.0.7922.72 Omnibox spoofing via malicious network trafficsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalInteger overflow in Google Chrome Codecs enables remote sandbox escape via crafted video pre-151.0.7922.72secure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLACriticalANGLE input validation flaw allows sandbox escape via crafted HTML in Chrome <151.0.7922.72secure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Windows Media bug pre-151.0.7922.72 allows compromised renderer to bypass same-origin policy via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome <151.0.7922.72 CSS UXSS allows remote script/HTML injection via crafted pagesecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumPre-151.0.7922.72 Chrome Cast input validation allowed local attacker to leak cross-origin datasecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome CSS flaw before 151.0.7922.72 leaks cross-origin data via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS <151.0.7922.72 SOP bypass via crafted HTML requiring specific user gesturessecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS race allows remote UI spoofing via crafted HTML before 151.0.7922.72secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome Passwords UI flaw enables domain spoofing via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumUI spoofing vulnerability in Chrome for iOS before 151.0.7922.72 via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome iOS pre-151.0.7922.72 incorrect security UI enables domain spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalChrome DevTools untrusted input validation flaw enables sandbox escape via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAHighChrome <151.0.7922.72 V8 use-after-free enables sandboxed remote code execution via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 19, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome for iOS <151.0.7922.72 allows remote UI spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalChrome Passwords validation flaw enables sandbox escape from compromised renderer via crafted HTML (pre-151.0.7922.72)secure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome Passwords pre-151.0.7922.72 cross-origin data leak via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLACriticalUse-after-free in ANGLE allows sandbox escape in Google Chrome pre-151.0.7922.72 via crafted HTMLsecure-packages-26.05Aug 4, 2026Aug 11, 2026Aug 4, 2026same day
Fixed within SLAMediumInsufficient validation of untrusted input in Chrome Passwords allows UI spoofing by compromised renderersecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome for iOS <151.0.7922.72 navigation restriction bypass via crafted HTML by remote attackersecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumChrome Passwords vulnerability pre-151.0.7922.72 leaks cross-origin data via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day
Fixed within SLAMediumGoogle Chrome for iOS <151.0.7922.72 allows UI spoofing via crafted HTMLsecure-packages-26.05Aug 4, 2026Sep 18, 2026Aug 4, 2026same day