2026 CVE Vulnerabilities
61,760 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11130 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-11129 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cro... |
| CVE-2026-11128 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | Inappropriate implementation in Web Share in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convince... |
| CVE-2026-11127 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | Inappropriate implementation in WebAPKs in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to ... |
| CVE-2026-11126 | MEDIUM | 4.3 | 0.1% | Jun 4, 2026 | Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a use... |
| CVE-2026-11125 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Compositing in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary cod... |
| CVE-2026-11124 | HIGH | 8.8 | 0.2% | Jun 4, 2026 | Integer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap c... |
| CVE-2026-11123 | MEDIUM | 6.5 | 0.3% | Jun 4, 2026 | Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensi... |
| CVE-2026-11122 | MEDIUM | 6.1 | 0.2% | Jun 4, 2026 | Inappropriate implementation in Keyboard in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arb... |
| CVE-2026-11121 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | Insufficient validation of untrusted input in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who... |
| CVE-2026-11120 | CRITICAL | 9.6 | 0.3% | Jun 4, 2026 | Insufficient validation of untrusted input in Enterprise Reporting in Google Chrome prior to 149.0.7827.53 allowed a rem... |
| CVE-2026-11119 | CRITICAL | 9.6 | 0.2% | Jun 4, 2026 | Inappropriate implementation in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had... |
| CVE-2026-11118 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-11117 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Views in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrar... |
| CVE-2026-11116 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code... |
| CVE-2026-11115 | HIGH | 7.3 | 0.1% | Jun 4, 2026 | Use after free in Updater in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform OS-leve... |
| CVE-2026-11114 | CRITICAL | 9.6 | 0.2% | Jun 4, 2026 | Use after free in Device Trust in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who had compromi... |
| CVE-2026-11113 | CRITICAL | 9.6 | 0.3% | Jun 4, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker wh... |
| CVE-2026-11112 | CRITICAL | 9.6 | 0.2% | Jun 4, 2026 | Insufficient validation of untrusted input in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remo... |
| CVE-2026-11111 | HIGH | 8.1 | 0.2% | Jun 4, 2026 | Out of bounds read in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of bound... |
| CVE-2026-11110 | MEDIUM | 6.5 | 0.3% | Jun 4, 2026 | Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data v... |
| CVE-2026-11109 | MEDIUM | 6.5 | 0.3% | Jun 4, 2026 | Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data v... |
| CVE-2026-11108 | HIGH | 8.8 | 0.2% | Jun 4, 2026 | Inappropriate implementation in NFC in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to perf... |
| CVE-2026-11107 | MEDIUM | 4.3 | 0.2% | Jun 4, 2026 | Inappropriate implementation in Downloads in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform U... |
| CVE-2026-11106 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-or... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now