Use after free in MediaStream in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Chromium CVE-2026-93375: Incorrect reference resolution in Tracing
Chromium CVE-2026-91722: Use after free
Missing authorization in AppManifest in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
Chromium CVE-2026-91737: Use after free
Chromium CVE-2026-91733: Improper state validation
Chromium CVE-2026-91734: Incorrect authorization
Chromium CVE-2026-91721: Use after free
Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Buffer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)
Chromium CVE-2026-87617: Use after free in DevTools
Chromium CVE-2026-87510: Improper input validation in FileAPI
Chromium CVE-2026-87533: Use after free in DevTools
Chromium CVE-2026-87505: Incorrect authorization in FileSystem
Chromium CVE-2026-87570: Incorrect authorization in SiteIsolation
Chromium CVE-2026-87479: Insufficient policy enforcement in Extensions
Chromium CVE-2026-87471: Incorrect authorization in ServiceWorker
Chromium CVE-2026-87433: Race condition in FileAPI
Chromium CVE-2026-87457: Race condition in Updater
Chromium CVE-2026-87606: Missing authorization in SiteIsolation
Chromium CVE-2026-87480: Use after free in Printing
Chromium CVE-2026-87460: Use after free in Platform
Chromium CVE-2026-87542: Use after free in Input
Chromium CVE-2026-87524: Use after free in Core
Chromium CVE-2026-87554: Race condition in Chromoting
Chromium CVE-2026-87444: Memory corruption in Codecs
Chromium CVE-2026-87578: Use after free in Receiver
Chromium CVE-2026-85053: Improper resource exposure in CacheStorage
Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Chromium: CVE-2026-78952 Out of bounds write in Crashpad