CVE Datenbank
Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.
CVE-2026-48501 - GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.93.0, GitHub CLI incorrectly incl
CVE-2026-45663 - Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.1 and earlier, a command inje
CVE-2026-45662 - Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.0 and earlier, the deleteRegi
CVE-2026-44962 - Plesk contains an XPath injection vulnerability in the APS Application Catalog search functionality,
CVE-2026-39276 - The template upload feature in Emlog Pro v2.6.9 has a path traversal vulnerability, allowing authent
CVE-2026-39229 - Bolt CMS through 3.7.0 allows SQL Injection in the 'order' parameter of the content listing pages. A
CVE-2026-36324 - SourceCodester Doctor Appointment System 1.0 is vulnerable to Cross Site Scripting (XSS) due to impr
CVE-2026-35674 - OpenClaw before 2026.5.18 contains a scope bypass vulnerability in the Gateway chat.send route that
CVE-2026-35673 - OpenClaw before 2026.4.29 contains an SSRF policy bypass vulnerability in browser debug and export r
CVE-2026-35630 - OpenClaw before 2026.5.18 contains an authorization bypass vulnerability in QQBot native approval bu
CVE-2026-34507 - OpenClaw before 2026.4.29 contains a policy bypass vulnerability in QQBot admin commands that allows
CVE-2026-33386 - QuickCMS is vulnerable to Cross-Site Scripting (XSS) through its insecure HTTP-based plugin‑fetching
CVE-2026-33384 - QuickCMS allows a user's session identifier to be set before authentication. The value of this sessi
CVE-2026-32906 - OpenClaw before 2026.5.12 contains a privilege escalation vulnerability in Slack plugin approvals th
CVE-2026-32905 - OpenClaw before 2026.5.4 contains an authorization bypass vulnerability in the bundled device-pair p
CVE-2026-10101 - ACM/MCE assisted-service writes raw referenced pull-secret contents into `InfraEnv.status.conditions
CVE-2026-10099 - XX-Net V5.16.6 contains a WebSocket frame parsing vulnerability in the WebSocket_receive_worker rout
CVE-2026-10069 - A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of
CVE-2026-10068 - A flaw has been found in Shibby Tomato 1.28. The affected element is the function send of the file u
CVE-2026-10067 - A vulnerability was detected in Shibby Tomato 1.28. Impacted is the function sub_90F0 of the file mu
CVE-2026-10066 - A security vulnerability has been detected in Shibby Tomato up to 1.28. This issue affects the funct
CVE-2026-10065 - A weakness has been identified in Shibby Tomato 1.28. This vulnerability affects the function get_up
CVE-2026-10064 - A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. This affects the function formSe
CVE-2018-25404 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25403 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25402 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25401 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25400 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25399 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25398 - The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated atta
CVE-2018-25397 - PHP-SHOP 1.0 contains a cross-site request forgery vulnerability that allows unauthenticated attacke
CVE-2018-25396 - Heatmiser Wifi Thermostat 1.7 contains a credential disclosure vulnerability that allows unauthentic
CVE-2018-25395 - Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to
CVE-2018-25394 - Kados R10 GreenBee contains an SQL injection vulnerability that allows unauthenticated attackers to
CVE-2018-25393 - Navigate CMS 2.8.5 contains a path traversal vulnerability that allows authenticated users to downlo
CVE-2018-25392 - MaxOn ERP Software 8.x-9.x contains an SQL injection vulnerability that allows authenticated users t
CVE-2018-25391 - HaPe PKH 1.1 fails to enforce authorization on its record deletion endpoints, allowing unauthenticat
CVE-2018-25390 - HaPe PKH 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipu
CVE-2018-25389 - HaPe PKH 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipu
CVE-2018-25388 - HaPe PKH 1.1 contains an arbitrary file upload vulnerability that allows authenticated attackers to
CVE-2018-25387 - HaPe PKH 1.1 contains a cross-site request forgery vulnerability that allows attackers to change adm
CVE-2018-25386 - HaPe PKH 1.1 contains multiple SQL injection vulnerabilities in admin/media.php that allow attackers
CVE-2018-25385 - E-Registrasi Pencak Silat 18.10 contains an SQL injection vulnerability that allows unauthenticated
CVE-2018-25384 - Wikidforum 2.20 contains a cross-site scripting vulnerability that allows authenticated attackers to
CVE-2018-25383 - Free MP3 CD Ripper 2.8 contains a stack-based buffer overflow vulnerability in WMA file processing t
CVE-2018-25382 - Zechat 1.5 contains an SQL injection vulnerability that allows unauthenticated attackers to extract
CVE-2026-4290 - The WP Travel Pro plugin for WordPress is vulnerable to arbitrary user deletion via the /wp-json/wp-
CVE-2026-45609 - mcp-security provides Security and Authorization support for Model Context Protocol in Spring AI. Pr
CVE-2026-41159 - Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and char
CVE-2026-41150 - Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and char
CVE-2026-39292 - Falco Solutions PHPPageBuilder v0.31.0 contains an unrestricted file upload vulnerability in the pag
CVE-2026-10063 - A vulnerability was identified in TRENDnet TEW-432BRP 3.10B20. Affected by this issue is the functio
CVE-2026-10062 - A vulnerability was determined in TRENDnet TEW-432BRP 3.10B20. Affected by this vulnerability is the
CVE-2026-10042 - manga-image-translator contains a remote code execution vulnerability in the shared API server mode
CVE-2026-49325 - Improper handling of physical conditions in the bike-shutdown control of the Indian Motorcycle Scout
CVE-2026-49318 - Incorrect behavior order in the Infotainment / Digital Round display of the Indian Motorcycle Scout
CVE-2026-49317 - Incorrect behavior order in the Infotainment / Digital Round display of the Indian Motorcycle Scout
CVE-2026-49316 - Expected behavior violation in the in-vehicle network of the Indian Motorcycle Scout Bobber + Tech 2
CVE-2026-47696 - WWBN AVideo is an open source video platform. In 29.0 and earlier, plugin/AuthorizeNet/processPaymen
CVE-2026-47694 - WWBN AVideo is an open source video platform. In 29.0 and earlier, AVideo stores category descriptio
CVE-2026-46510 - form-data-objectizer converts FormData to object. Prior to 1.0.1, form-data-objectizer walks bracket
CVE-2026-46376 - FreePBX is an open source IP PBX. From 15.0.42 to before 16.0.45 and 17.0.7, unauthenticated users m
CVE-2026-46337 - WWBN AVideo is an open source video platform. In 29.0 and earlier, an unauthenticated remote attacke
CVE-2026-45731 - WWBN AVideo is an open source video platform. In 29.0 and earlier, view/update.php reads $_POST['upd
CVE-2026-45707 - n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, a
CVE-2026-45620 - WWBN AVideo is an open source video platform. In 29.0 and earlier, objects/mention.json.php has no U
CVE-2026-45619 - WWBN AVideo is an open source video platform. In 29.0 and earlier, EpgParser.php, plugin/AI/receiveA
CVE-2026-45615 - mouse07410/asn1c is an ASN.1 compiler. In 1.4 and earlier, a memory safety vulnerability was identif
CVE-2026-45610 - WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a cross-site request for
CVE-2026-45582 - n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, a
CVE-2026-45580 - WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a stored cross-site scri
CVE-2026-45578 - WWBN AVideo is an open source video platform. In 29.0 and earlier, there is a classic shell-metachar
CVE-2026-45555 - Roslyn CodeLens MCP Server is a Roslyn-based MCP server providing semantic code intelligence for .NE
CVE-2026-44698 - Home Assistant is open source home automation software that puts local control and privacy first. Pr
CVE-2026-44239 - FreePBX is an open source IP PBX. Prior to 16.0.22 and 17.0.5, the Dashboard module's getcontent AJA
CVE-2026-44238 - FreePBX is an open source IP PBX. Prior to 16.0.50 and 17.0.11, the CDR Reports module page allows S
CVE-2026-44237 - FreePBX is an open source IP PBX. Prior to 17.0.8, the FreePBX api module's OAuth2 implementation do
CVE-2026-40528 - OpenSC before 0.27.0, fixed in commit 0358817, contains a stack and heap buffer overrun vulnerabilit
CVE-2026-40510 - OpenSC before 0.27.0-rc1, fixed in commit 3f24f0b, contains a stack buffer overflow vulnerability in
CVE-2026-10075 - DreamMaker developed by Interinfo has a Path Traversal vulnerability, allowing unauthenticated remot
CVE-2026-10074 - DreamMaker developed by Interinfo has an Arbitrary File Read vulnerability, allowing privileged loca
CVE-2026-10073 - DreamMaker developed by Interinfo has an Arbitrary File Read vulnerability, allowing unauthenticated
CVE-2026-10072 - DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing privileged re
CVE-2026-10061 - A vulnerability was found in TRENDnet TEW-432BRP 3.10B20. Affected is the function formWPS of the fi
CVE-2026-10060 - A vulnerability has been found in TRENDnet TEW-432BRP 3.10B20. This impacts the function formSetRout
CVE-2026-9509 - An unhandled exception in Suprema BioStar 2 (Server), versions 2.9.8, 2.9.10, and 2.9.11, that allow
CVE-2026-9508 - Incorrect permission settings on a critical resource in Suprema BioStar 2 (versions 2.9.3 through 2.
CVE-2026-8326 - Path traversal vulnerability in Remote Spark (https://www.Remotespark.Com/) SparkView allows reading
CVE-2026-49324 - Uncontrolled resource consumption in the Wireless Control Module (WCM) of the Indian Motorcycle Scou
CVE-2026-49323 - Weak authentication between the Wireless Control Module (WCM) and the Engine Control Module (ECM) of
CVE-2026-48527 - HAX CMS helps manage microsite universe with PHP or NodeJs backends. Versions up to and including 26
CVE-2026-45611 - Rejected reason: Further research determined the issue is not a vulnerability.
CVE-2026-45551 - Group-Office is an enterprise customer relationship management and groupware tool. Prior to 26.0.25,
CVE-2026-45312 - RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine. In 0.24.0 and earlier, a Jinj
CVE-2026-45043 - RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.2, improper validat
CVE-2026-10071 - DreamMaker developed by Interinfo has an Arbitrary File Upload vulnerability, allowing unauthenticat
CVE-2026-9811 - A stored Cross-Site Scripting (XSS) vulnerability exists in the project selector component of Mautic
CVE-2026-9809 - A stored Cross-Site Scripting (XSS) vulnerability exists in the Projects component of Mautic 7. When
CVE-2026-9808 - An authorization bypass vulnerability exists in the Mautic 7 API v2 endpoints (utilizing API Platfor
CVE-2026-9559 - A path traversal vulnerability exists in the campaign import feature of Mautic 7. When extracting up
CVE-2025-41281 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41280 - Nozomi Networks Labs identified a CWE-23: Relative Path Traversal (Zip Slip) in Waterfall WF-500 RX
CVE-2025-41279 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41278 - Nozomi Networks Labs identified a CWE-125: Out-of-bounds Read in Waterfall WF-500 RX Host in version
CVE-2025-41277 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41276 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41275 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41274 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41273 - Nozomi Networks Labs identified a CWE-288: Authentication Bypass Using an Alternate Path or Channel
CVE-2025-41272 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41271 - Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Console WebUI in Waterfall
CVE-2025-41270 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41269 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41268 - Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Wat
CVE-2025-41267 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41266 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2025-41265 - Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS
CVE-2026-9558 - A Server-Side Template Injection (SSTI) vulnerability exists in Mautic's theme engine. The platform
CVE-2026-9557 - A Server-Side Request Forgery (SSRF) vulnerability exists in Mautic's Focus component. Due to insuff
CVE-2026-49201 - The upload.cgi binary, responsible for processing device backups, contains a hardcoded AES encryptio
CVE-2026-46579 - A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Al
CVE-2026-42965 - A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vu
CVE-2026-10078 - A flaw was found in the Quay config-tool's GitLab OAuth validator. This vulnerability causes sensiti
CVE-2025-12714 - The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unau
CVE-2026-9189 - The Contact Form 7 – PayPal & Stripe Add-on plugin for WordPress is vulnerable to Payment Bypass via
CVE-2026-6075 - The Media Library Assistant plugin for WordPress is vulnerable to Cross-Site Request Forgery in vers
CVE-2026-49200 - The acer_cgi.log file in the device firmware is accessible without authentication via the web interf
CVE-2026-49199 - Crafted MQTT messages can trigger command injection, resulting in root-level code execution on the t
CVE-2026-49198 - Improper access control in the MQTT broker allows wildcard topic subscriptions, exposing all MQTT tr
CVE-2026-49197 - Web endpoints intended for the Acer Connect app improperly validate the HTTP Authorization header, f
CVE-2026-49196 - The Wi-Fi device blocking feature fails to sanitize MAC address input, allowing injection and execut
CVE-2026-49195 - Unauthenticated Debug Service. The /sbin/mtk_dut binary is exposed on TCP port 9000 without authenti
CVE-2026-10058 - ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerabi
CVE-2026-10057 - ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerabi
CVE-2026-10056 - CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when run
CVE-2026-10052 - A flaw was found in the Quay config-tool's LDAP and SMTP validation functions. An attacker with conf
CVE-2026-10039 - The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to generic SQL Injection via the
CVE-2026-9243 - The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via
CVE-2026-4776 - An SQL injection vulnerability exists in Mautic's API contact filtering mechanism. Due to insufficie
CVE-2026-49322 - Weak authentication in the Wireless Control Module (WCM) of the Indian Motorcycle Scout Bobber + Tec
CVE-2026-3655 - The OTP Login With Phone Number, OTP Verification plugin for WordPress is vulnerable to authenticati
CVE-2025-11262 - The Link Whisper Free plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user
CVE-2026-9714 - The Simple Divi Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the
CVE-2026-9493 - Service Center developed by BankPro E-Service Technology has an Insecure Direct Object Reference vul
CVE-2026-8732 - The WP Maps Pro plugin for WordPress is vulnerable to Privilege Escalation via Administrator Account
CVE-2026-6324 - A flaw was found in libsoup. A remote attacker could exploit an unsigned to signed conversion error
CVE-2026-6275 - The StatCounter – Free Real Time Visitor Stats plugin for WordPress is vulnerable to Stored Cross-Si
CVE-2025-14042 - The Automotive Car Dealership Business WordPress Theme for WordPress is vulnerable to Stored Cross-S
CVE-2025-11993 - The WooCommerce Infinite Scroll and Ajax Pagination plugin for WordPress is vulnerable to PHP Object
CVE-2026-2128 - The Breeze plugin for WordPress is vulnerable to Exposure of Sensitive Information to an Unauthorize
CVE-2026-8995 - The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Se
CVE-2026-7430 - The Post Snippets plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions
CVE-2026-8070 - Incorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypa
CVE-2026-7480 - An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interf
CVE-2026-6892 - Improper handling of symbolic links in the installer of CUPS Printer Driver for macOS(*) may allow a
CVE-2026-6891 - Improper handling of symbolic links in the installer of My Image Garden for macOS Version 3.6.8 or e
CVE-2026-9999 - Inappropriate implementation in ANGLE in Google Chrome on Mac prior to 148.0.7778.216 allowed a remo
CVE-2026-9998 - Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had
CVE-2026-9997 - Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had c
CVE-2026-9996 - Out of bounds read in WebRTC in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attack
CVE-2026-9995 - Use after free in WebXR in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execut
CVE-2026-9994 - Use after free in Core in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker
CVE-2026-9993 - Use after free in Views in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had c
CVE-2026-9992 - Use after free in Network in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to exec
CVE-2026-9991 - Inappropriate implementation in Media in Google Chrome on Windows prior to 148.0.7778.216 allowed a
CVE-2026-9990 - Use after free in WebAppInstalls in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote at
CVE-2026-9989 - Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9988 - Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.216 allowed a remote attacker
CVE-2026-9987 - Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 14
CVE-2026-9986 - Insufficient validation of untrusted input in OptimizationGuide in Google Chrome prior to 148.0.7778
CVE-2026-9985 - Insufficient validation of untrusted input in Media in Google Chrome on ChromeOS prior to 148.0.7778
CVE-2026-9984 - Use after free in UI in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker t
CVE-2026-9983 - Type Confusion in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
CVE-2026-9982 - Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed
CVE-2026-9981 - Inappropriate implementation in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attac
CVE-2026-9980 - Insufficient validation of untrusted input in Printing in Google Chrome prior to 148.0.7778.216 allo
CVE-2026-9979 - Insufficient validation of untrusted input in Input in Google Chrome prior to 148.0.7778.216 allowed
CVE-2026-9978 - Use after free in Glic in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
CVE-2026-9977 - Insufficient validation of untrusted input in WebShare in Google Chrome on Android prior to 148.0.77
CVE-2026-9976 - Inappropriate implementation in USB in Google Chrome prior to 148.0.7778.216 allowed a remote attack
CVE-2026-9975 - Out of bounds read and write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9974 - Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who ha
CVE-2026-9973 - Out of bounds write in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to exec
CVE-2026-9972 - Uninitialized Use in Gamepad in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attack
CVE-2026-9971 - Inappropriate implementation in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote
CVE-2026-9970 - Use after free in WebGL in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had c
CVE-2026-9969 - Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed
CVE-2026-9968 - Integer overflow in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
CVE-2026-9967 - Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to pot
CVE-2026-9966 - Integer overflow in XML in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacke
CVE-2026-9965 - Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to p
CVE-2026-9964 - Use after free in Bluetooth in Google Chrome on Mac prior to 148.0.7778.216 allowed an attacker who
CVE-2026-9963 - Uninitialized Use in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker w
CVE-2026-9962 - Use after free in WebRTC in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execu
CVE-2026-9961 - Use after free in SurfaceCapture in Google Chrome prior to 148.0.7778.216 allowed a remote attacker
CVE-2026-9960 - Integer overflow in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who ha
CVE-2026-9959 - Race in WebRTC in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to leak
CVE-2026-9958 - Use after free in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to poten
CVE-2026-9957 - Use after free in PDF in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
CVE-2026-9956 - Use after free in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9955 - Inappropriate implementation in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote
CVE-2026-9954 - Use after free in TabStrip in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who co
CVE-2026-9953 - Out of bounds read in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to ob
CVE-2026-9952 - Use after free in WebAudio in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to exe
CVE-2026-9951 - Use after free in UI in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potential
CVE-2026-9950 - Insufficient validation of untrusted input in iOS in Google Chrome on iOS prior to 148.0.7778.216 al
CVE-2026-9949 - Use after free in Core in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker
CVE-2026-9948 - Use after free in Views in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker wh
CVE-2026-9947 - Use after free in XML in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute
CVE-2026-9946 - Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had c
CVE-2026-9945 - Use after free in Media in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacke
CVE-2026-9944 - Uninitialized Use in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who ha
CVE-2026-9943 - Out of bounds read in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote att
CVE-2026-9942 - Uninitialized Use in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who ha
CVE-2026-9941 - Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execut
CVE-2026-9940 - Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to
CVE-2026-9939 - Heap buffer overflow in WebCodecs in Google Chrome prior to 148.0.7778.216 allowed a remote attacker
CVE-2026-9938 - Inappropriate implementation in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacke
CVE-2026-9937 - Use after free in UI in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker w
CVE-2026-9936 - Use after free in GFX in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9935 - Uninitialized Use in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to lea
CVE-2026-9934 - Use after free in Aura in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convin
CVE-2026-9933 - Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who convi
CVE-2026-9932 - Use after free in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacke
CVE-2026-9931 - Use after free in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had com
CVE-2026-9930 - Out of bounds write in Dawn in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacke
CVE-2026-9929 - Inappropriate implementation in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a
CVE-2026-9928 - Out of bounds read in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote att
CVE-2026-9927 - Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execut
CVE-2026-9926 - Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9925 - Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had c
CVE-2026-9924 - Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote a
CVE-2026-9923 - Use after free in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potenti
CVE-2026-9922 - Use after free in GPU in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9921 - Uninitialized Use in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9920 - Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attack
CVE-2026-9919 - Out of bounds read in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote att
CVE-2026-9918 - Inappropriate implementation in Tint in Google Chrome prior to 148.0.7778.216 allowed a remote attac
CVE-2026-9917 - Uninitialized Use in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9916 - Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9915 - Heap buffer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who
CVE-2026-9914 - Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed
CVE-2026-9913 - Inappropriate implementation in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9912 - Inappropriate implementation in GPU in Google Chrome on Android prior to 148.0.7778.216 allowed a re
CVE-2026-9911 - Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to perf
CVE-2026-9910 - Out of bounds memory access in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attac
CVE-2026-9909 - Integer overflow in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had
CVE-2026-9908 - Out of bounds read in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to ob
CVE-2026-9907 - Out of bounds read in Dawn in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote atta
CVE-2026-9906 - Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who ha
🏢 CVE nach Hersteller
Empfohlene Sicherheitstools
Unterstütze uns durch einen Kauf - wir erhalten eine kleine Provision.