2026 CVE Vulnerabilities
64,909 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-87590 | MEDIUM | 5.9 | 0.2% | Sep 9, 2026 | Improper input validation in Passwords in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially ... |
| CVE-2026-87589 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | Incorrect authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compr... |
| CVE-2026-87586 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Out of bounds read in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory outside the... |
| CVE-2026-87584 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | Incorrect authorization in WebUI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system acce... |
| CVE-2026-87583 | MEDIUM | 5.4 | 0.2% | Sep 9, 2026 | UI misrepresentation in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to spo... |
| CVE-2026-87580 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | Incorrect authorization in WebAppInstalls in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had comp... |
| CVE-2026-87577 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web orig... |
| CVE-2026-87575 | MEDIUM | 5.4 | 0.1% | Sep 9, 2026 | Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social en... |
| CVE-2026-87574 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Information leak in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-orig... |
| CVE-2026-87573 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Improper input validation in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web ori... |
| CVE-2026-87571 | MEDIUM | 5.4 | 0.1% | Sep 9, 2026 | Improper certificate validation in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging s... |
| CVE-2026-87568 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Improper input validation in Chromium in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromi... |
| CVE-2026-87567 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | UI misrepresentation in UrlFormatting in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging socia... |
| CVE-2026-87566 | MEDIUM | 5.3 | 0.2% | Sep 9, 2026 | Observable discrepancy in Layout in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak sensitive inf... |
| CVE-2026-87565 | MEDIUM | 6.5 | 0.2% | Sep 9, 2026 | Information leak in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to leak se... |
| CVE-2026-87564 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Type confusion in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside the sandbox... |
| CVE-2026-87563 | MEDIUM | 4.3 | 0.1% | Sep 9, 2026 | Origin validation error in Paint in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origi... |
| CVE-2026-87562 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Incorrect reference resolution in Accessibility in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attac... |
| CVE-2026-87561 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Incorrect authorization in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypas... |
| CVE-2026-87560 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Missing authorization in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system acce... |
| CVE-2026-87559 | MEDIUM | 4.2 | 0.2% | Sep 9, 2026 | UI misrepresentation in UI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineeri... |
| CVE-2026-87557 | MEDIUM | 4.3 | 0.2% | Sep 9, 2026 | Missing authorization in LocalNetworkAccess in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had co... |
| CVE-2026-87556 | MEDIUM | 4.3 | 0.3% | Sep 9, 2026 | Missing authorization in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system acce... |
| CVE-2026-87555 | MEDIUM | 4.7 | 0.3% | Sep 9, 2026 | Uninitialized resource in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to read me... |
| CVE-2026-87552 | MEDIUM | 5.5 | 0.1% | Sep 9, 2026 | Missing authorization in TrustedWebActivities in Google Chrome on on Android prior to 153.0.8010.36 allowed a local atta... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now