2026 CVE Vulnerabilities

64,824 CVEs published in 2026.

CVE IDSeverityCVSSDescription
CVE-2026-7935MEDIUM5.4Inappropriate implementation in Speech in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform UI s...
CVE-2026-7934MEDIUM4.2Insufficient validation of untrusted input in Popup Blocker in Google Chrome prior to 148.0.7778.96 allowed a remote att...
CVE-2026-7933MEDIUM4.3Out of bounds read in WebCodecs in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform an out of b...
CVE-2026-7932MEDIUM4.4Insufficient policy enforcement in Downloads in Google Chrome prior to 148.0.7778.96 allowed a local attacker to bypass ...
CVE-2026-7931MEDIUM5.4Insufficient validation of untrusted input in iOS in Google Chrome on iOS prior to 148.0.7778.96 allowed a remote attack...
CVE-2026-7930——Rejected reason: Is not a vulnerability, is a feature bug.
CVE-2026-7929HIGH7.5Use after free in MediaRecording in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who convinced a user ...
CVE-2026-7928HIGH8.8Use after free in WebRTC in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker to execute arbitra...
CVE-2026-7927HIGH8.8Type Confusion in Runtime in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code in...
CVE-2026-7926HIGH8.8Use after free in PresentationAPI in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary...
CVE-2026-7925HIGH7.8Use after free in Chromoting in Google Chrome on Windows prior to 148.0.7778.96 allowed a local attacker to perform OS-l...
CVE-2026-7924MEDIUM6.5Uninitialized Use in Dawn in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to obtain potentially sensit...
CVE-2026-7923HIGH8.3Out of bounds write in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the re...
CVE-2026-7922HIGH8.3Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform...
CVE-2026-7921HIGH8.8Use after free in Passwords in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code ...
CVE-2026-7920HIGH8.3Use after free in Skia in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7919HIGH8.3Use after free in Aura in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the rendere...
CVE-2026-7918HIGH8.3Use after free in GPU in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer...
CVE-2026-7917HIGH8.3Use after free in Fullscreen in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compro...
CVE-2026-7916HIGH8.3Insufficient data validation in InterestGroups in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had...
CVE-2026-7915MEDIUM4.3Insufficient data validation in DevTools in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker to...
CVE-2026-7914HIGH8.3Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had com...
CVE-2026-7913HIGH7.8Insufficient policy enforcement in DevTools in Google Chrome on Android prior to 148.0.7778.96 allowed a local attacker ...
CVE-2026-7912MEDIUM4.2Integer overflow in GPU in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker who had compromised...
CVE-2026-7911HIGH8.3Use after free in Aura in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compromised ...

Check if your code is affected by 2026 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now