2026 CVE Vulnerabilities

64,909 CVEs published in 2026.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2026-87551MEDIUM4.3Improper certificate validation in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging soc...
CVE-2026-87550MEDIUM4.3Improper encoding or escaping of output in CSS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to pote...
CVE-2026-87549MEDIUM6.5Incomplete cleanup in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engi...
CVE-2026-87548MEDIUM4.3Improper state validation in Installer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass syste...
CVE-2026-87546MEDIUM4.3Incorrect type conversion or cast in Safebrowsing in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote att...
CVE-2026-87545MEDIUM6.5Information leak in Mobile in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker leveraging social...
CVE-2026-87543MEDIUM4.3Missing authorization in Core in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the ...
CVE-2026-87541MEDIUM6.5Information leak in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the...
CVE-2026-87540MEDIUM5.4Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elemen...
CVE-2026-87538MEDIUM4.2Clickjacking in Input in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer...
CVE-2026-87535MEDIUM6.5Information loss or omission in Safebrowsing in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker...
CVE-2026-87532MEDIUM6.5Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass sy...
CVE-2026-87523MEDIUM5.3Race condition in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engin...
CVE-2026-87522MEDIUM6.5Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leverag...
CVE-2026-87519MEDIUM6.5Incorrect authorization in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging soc...
CVE-2026-87518MEDIUM5.3Observable discrepancy in Safebrowsing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker who h...
CVE-2026-87516MEDIUM4.3Observable discrepancy in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak cross-ori...
CVE-2026-87515MEDIUM6.5Incorrect authorization in FileAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social e...
CVE-2026-87513MEDIUM6.5Missing authorization in ControlledFrame in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging so...
CVE-2026-87511MEDIUM4.3Missing authorization in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-orig...
CVE-2026-87508MEDIUM4.3Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin...
CVE-2026-87507MEDIUM5.4UI misrepresentation in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social en...
CVE-2026-87503MEDIUM6.5Inappropriate implementation in Downloads in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacke...
CVE-2026-87502MEDIUM4.2Confused deputy in Fullscreen in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the ...
CVE-2026-87501MEDIUM5.4UI misrepresentation in Passwords in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now