2026 CVE Vulnerabilities

61,759 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-11179HIGH8.8Inappropriate implementation in ORB in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass site iso...
CVE-2026-11178MEDIUM4.3Insufficient policy enforcement in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker ...
CVE-2026-11177HIGH8.8Use after free in Omnibox in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to enga...
CVE-2026-11176MEDIUM6.5Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-or...
CVE-2026-11175HIGH8.8Incorrect security UI in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perfor...
CVE-2026-11174MEDIUM5.3Inappropriate implementation in Site Isolation in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had...
CVE-2026-11173HIGH8.8Out of bounds write in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the rend...
CVE-2026-11172HIGH8.8Incorrect security UI in Contact Picker in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to ...
CVE-2026-11171HIGH8.8Integer overflow in Blink in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code in...
CVE-2026-11170HIGH8.1Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to...
CVE-2026-11169HIGH8.1Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrar...
CVE-2026-11168MEDIUM6.5Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had com...
CVE-2026-11167CRITICAL9.6Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who...
CVE-2026-11166MEDIUM6.8Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrar...
CVE-2026-11165CRITICAL9.6Use after free in WebMIDI in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to potentially perfor...
CVE-2026-11164HIGH8.8Use after free in Blink in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code insi...
CVE-2026-11163CRITICAL9.6Use after free in Messages in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to potentially p...
CVE-2026-11162MEDIUM4.3Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-orig...
CVE-2026-11161MEDIUM4.3Inappropriate implementation in DataTransfer in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak c...
CVE-2026-11160MEDIUM6.5Out of bounds read in Input in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potenti...
CVE-2026-11159MEDIUM4.3Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data vi...
CVE-2026-11158HIGH8.6Insufficient validation of untrusted input in Downloads in Google Chrome on Mac prior to 149.0.7827.53 allowed a local a...
CVE-2026-11157MEDIUM5.4Script injection in Accessibility in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to in...
CVE-2026-11156MEDIUM4.3Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-orig...
CVE-2026-11155MEDIUM4.3Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-orig...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now