Where
-Infinity
0
Severity
8.3
EPSS
0.21%
Race Condition
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H

Chromium CVE-2026-91748: Race condition

1 / 3
Source: Microsoft
First published (updated )
Severity
8.3
EPSS
0.25%
Race Condition
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H

Chromium CVE-2026-91712: Race condition

1 / 3
Source: Microsoft
First published (updated )
Severity
8.1
EPSS
0.09%
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

Chromium CVE-2026-91727: Incorrect reference resolution

1 / 3
Source: Microsoft
First published (updated )
Severity
5.3
EPSS
0.23%
Race Condition
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N

Chromium CVE-2026-91744: Race condition

1 / 3
Source: Microsoft
First published (updated )
Severity
7.8
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination or corrupt kernel memory.

1 / 126
Source: MITRE
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 118
Source: Apple
First published (updated )
Severity
7.1
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 126
Source: Apple
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to cause unexpected system termination.

1 / 126
Source: MITRE
First published (updated )
Severity
7.8
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27. Opening a maliciously crafted file may lead to unexpected process termination.

1 / 142
Source: MITRE
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 129
Source: Apple
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to access sensitive user data.

1 / 146
Source: MITRE
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 145
Source: Apple
First published (updated )
Severity
4.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 158
Source: Apple
First published (updated )
Severity
3.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal, Infoleak
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 146
Source: Apple
First published (updated )
Severity
5.4
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 158
Source: Apple
First published (updated )
Severity
8.4
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 170
Source: Apple
First published (updated )
Severity
7.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 170
Source: Apple
First published (updated )
Severity
6.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 169
Source: Apple
First published (updated )
Severity
7.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 170
Source: Apple
First published (updated )
Severity
7.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 170
Source: Apple
First published (updated )
Severity
4.3
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 170
Source: Apple
First published (updated )
Severity
9.1
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

A certificate validation issue was addressed with improved certificate validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An attacker with a compromised intermediate certificate authority may be able to issue certificates with arbitrary extended key usages.

1 / 173
Source: MITRE
First published (updated )
Severity
5.4
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 165
Source: Apple
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, watchOS 27. An app may be able to access sensitive user data.

1 / 166
Source: MITRE
First published (updated )
Severity
9.8
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A permissions issue was addressed with improved path validation. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to modify protected system files.

1 / 185
Source: MITRE
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. A malicious application may be able to determine a user's current location.

1 / 196
Source: MITRE
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

A logging issue was addressed with improved data redaction. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. An app may be able to access sensitive user data.

1 / 198
Source: MITRE
First published (updated )
Severity
6.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

A logic issue was addressed with improved state management. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to an unexpected process termination.

1 / 202
Source: MITRE
First published (updated )
Severity
6.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

A permissions issue was addressed by removing the vulnerable code. This issue is fixed in Safari 27, iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may disclose sensitive user information.

1 / 205
Source: NVD
First published (updated )
Severity
5.5
Race Condition, Use After Free, Buffer Overflow, Input Validation, Integer Overflow, Double Free, Null Pointer Dereference, Path Traversal
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Accelerate Framework. An out-of-bounds write issue was addressed with improved bounds checking.

1 / 224
Source: Apple
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203