Where
AND
-Infinity
0
Severity
3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Incorrect authorization in GPU in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

First published (updated )
Severity
3.1
Race Condition, Use After Free, Input Validation, Integer Overflow, Buffer Overflow
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.

1 / 77
Source: NVD
First published (updated )
Severity
3.1
Race Condition, Use After Free, Input Validation, Integer Overflow, Buffer Overflow
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2. Processing maliciously crafted web content may lead to an unexpected Safari crash.

1 / 85
Source: NVD
First published (updated )
Severity
2.4
Buffer Overflow, Race Condition, Use After Free, Input Validation, Integer Overflow, Path Traversal, Double Free
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Accounts Framework. This issue was addressed with improved data protection.

1 / 131
Source: Apple
First published (updated )
Severity
2
CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber

A local privilege escalation vulnerability in Palo Alto Networks Prisma® Browser allows a locally authenticated administrator with access to the macOS local filesystem to perform actions on the device with root privileges.

This issue only affects Prisma® Browser on macOS.

First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11690 Out of bounds read and write in Media

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation, Use After Free
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11674 Use after free in Guest View

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Use After Free
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11683 Use after free in WebCodecs

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11685 Insufficient data validation in MediaCapture

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-12458 Incorrect security UI in Passwords

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-12017 Insufficient validation of untrusted input  Extensions

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
CSRF
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-13944 Inappropriate implementation in DataTransfer

1 / 3
Source: Microsoft
First published (updated )
Severity
2.3
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

CVE-2026-33450 is an out of bounds read vulnerability in the Secure Access MacOS client prior to 14.50. Attackers with control of a modified server can send a malformed packet to the client causing a denial of service.

First published (updated )
Severity
3.1
EPSS
0.20%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-9944 Uninitialized Use in ANGLE

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.01%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-6312 Insufficient policy enforcement in Passwords

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.01%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-6313 Insufficient policy enforcement in CORS

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.01%
CSRF
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-8022 Inappropriate implementation in MHTML

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.02%
Race Condition
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7351 Race in MHTML

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11251 Insufficient validation of untrusted input in Password Manager

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.03%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-8017 Side-channel information leakage in Media

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11244 Insufficient validation of untrusted input in WebAuthentication

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.03%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7909 Inappropriate implementation in ServiceWorker

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.04%
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7968 Insufficient validation of untrusted input in CORS

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.04%
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7966 Insufficient validation of untrusted input in SiteIsolation

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.16%
Buffer Overflow
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-8545 Object corruption in Compositing

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.04%
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7965 Insufficient validation of untrusted input in DevTools

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
Input Validation
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-11240 Insufficient validation of untrusted input in Loader

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.03%
Race Condition
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7954 Race in Shared Storage

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.03%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7959 Inappropriate implementation in Navigation

1 / 3
Source: Microsoft
First published (updated )
Severity
3.1
EPSS
0.03%
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Chromium: CVE-2026-7949 Out of bounds read in Skia

1 / 3
Source: Microsoft
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203