Accessibility. A logic issue was addressed with improved checks.
Chromium CVE-2026-87491: Out of bounds write in V8
Chromium: CVE-2026-85046 Type confusion in V8
Chromium: CVE-2025-13223 Type Confusion in V8
Accessibility. A privacy issue was addressed by removing sensitive data.
Chromium: CVE-2026-2441 Use after free in CSS
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Internet Explorer Memory Corruption Vulnerability
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Microsoft Browser Information Disclosure Vulnerability."
Chromium: CVE-2026-5281 Use after free in Dawn
Chromium: CVE-2026-11645 Out of bounds memory access in V8
Chromium: CVE-2025-10585 Type Confusion in V8
Accessibility. An authorization issue was addressed with improved state management.
Chromium: CVE-2026-3909 Out of bounds write in Skia
Chromium: CVE-2026-3910 Inappropriate implementation in V8
Chromium: CVE-2025-6554 Type Confusion in V8
Chromium: CVE-2025-2783 Incorrect handle provided in unspecified circumstances in Mojo on Windows
Chromium: CVE-2024-7971 Type confusion in V8
Chromium: CVE-2024-7965 Inappropriate implementation in V8
Chromium: CVE-2024-0519 Out of bounds memory access in V8
Chromium: CVE-2023-7024 Heap buffer overflow in WebRTC
Chromium: CVE-2023-6345 Integer overflow in Skia
Chromium: CVE-2023-5217 Heap buffer overflow in vp8 encoding in libvpx
Chromium: CVE-2023-4863 Heap buffer overflow in WebP
Chromium: CVE-2023-4762 Type Confusion in V8
Chromium: CVE-2023-3079 Type Confusion in V8
Chromium: CVE-2023-2136 Integer overflow in Skia
Chromium: CVE-2023-2033 Type Confusion in V8
Google Chromium GPU contains a heap buffer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.
Chromium: CVE-2022-3075 Insufficient data validation in Mojo