2026 CVE Vulnerabilities

61,767 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-11035HIGH7.3Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker ...
CVE-2026-11034MEDIUM6.1Insufficient validation of untrusted input in Tab Group Sync in Google Chrome on Android prior to 149.0.7827.53 allowed ...
CVE-2026-11033MEDIUM6.5Uninitialized Use in WebML in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to obtain potentiall...
CVE-2026-11032MEDIUM6.5Inappropriate implementation in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to le...
CVE-2026-11031MEDIUM4.3Insufficient validation of untrusted input in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote ...
CVE-2026-11030HIGH8.8Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap ...
CVE-2026-11029CRITICAL9.6Insufficient validation of untrusted input in Drag and Drop in Google Chrome on Android prior to 149.0.7827.53 allowed a...
CVE-2026-11028HIGH8.8Use after free in Media in Google Chrome on Linux and ChromeOS prior to 149.0.7827.53 allowed a remote attacker who had ...
CVE-2026-11027MEDIUM6.5Insufficient validation of untrusted input in Glic in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who...
CVE-2026-11026MEDIUM6.5Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a u...
CVE-2026-11025MEDIUM6.5Insufficient policy enforcement in Navigation in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attack...
CVE-2026-11024HIGH8.8Stack buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit s...
CVE-2026-11023MEDIUM6.5Inappropriate implementation in WebAppInstalls in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had...
CVE-2026-11022MEDIUM6.5Insufficient validation of untrusted input in DevTools in Google Chrome prior to 149.0.7827.53 allowed a remote attacker...
CVE-2026-11021CRITICAL9.6Insufficient validation of untrusted input in GPU in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote at...
CVE-2026-11020MEDIUM6.5Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cro...
CVE-2026-11019MEDIUM6.5Inappropriate implementation in Payments in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker wh...
CVE-2026-11018MEDIUM6.5Insufficient policy enforcement in Actor in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass nav...
CVE-2026-11017MEDIUM6.5Inappropriate implementation in Link Preview in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had c...
CVE-2026-11016MEDIUM6.5Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker ...
CVE-2026-11015HIGH8.1Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of boun...
CVE-2026-11014MEDIUM6.5Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced ...
CVE-2026-11013MEDIUM6.5Insufficient validation of untrusted input in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker ...
CVE-2026-11012HIGH8.3Use after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromise...
CVE-2026-11011HIGH8.1Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker wh...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now