2026 CVE Vulnerabilities
48,931 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-11041 | HIGH | 8.8 | 0.2% | Jun 4, 2026 | Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote ... |
| CVE-2026-11040 | HIGH | 8.3 | 0.2% | Jun 4, 2026 | Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the render... |
| CVE-2026-11035 | HIGH | 7.3 | 0.1% | Jun 4, 2026 | Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker ... |
| CVE-2026-11030 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit heap ... |
| CVE-2026-11028 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Use after free in Media in Google Chrome on Linux and ChromeOS prior to 149.0.7827.53 allowed a remote attacker who had ... |
| CVE-2026-11024 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Stack buffer overflow in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially exploit s... |
| CVE-2026-11015 | HIGH | 8.1 | 0.3% | Jun 4, 2026 | Out of bounds read in WebGPU in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform an out of boun... |
| CVE-2026-11012 | HIGH | 8.3 | 0.3% | Jun 4, 2026 | Use after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromise... |
| CVE-2026-11011 | HIGH | 8.1 | 0.3% | Jun 4, 2026 | Insufficient policy enforcement in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker wh... |
| CVE-2026-11010 | HIGH | 8.3 | 0.3% | Jun 4, 2026 | Use after free in WebShare in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromi... |
| CVE-2026-11003 | HIGH | 8.8 | 0.5% | Jun 4, 2026 | Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-11000 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Use after free in Fonts in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary ... |
| CVE-2026-10995 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Heap buffer overflow in TabStrip in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user ... |
| CVE-2026-10991 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in... |
| CVE-2026-10989 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Inappropriate implementation in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a use... |
| CVE-2026-10988 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Views in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the render... |
| CVE-2026-10987 | HIGH | 8.8 | 0.4% | Jun 4, 2026 | Integer overflow in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code insid... |
| CVE-2026-10986 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Integer overflow in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code in... |
| CVE-2026-10982 | HIGH | 8.8 | 0.5% | Jun 4, 2026 | Use after free in WebXR in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-10978 | HIGH | 8.8 | 0.3% | Jun 4, 2026 | Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arb... |
| CVE-2026-10976 | HIGH | 7.4 | 0.3% | Jun 4, 2026 | Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensit... |
| CVE-2026-10975 | HIGH | 8.8 | 0.5% | Jun 4, 2026 | Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code ins... |
| CVE-2026-10973 | HIGH | 7.4 | 1.0% | Jun 4, 2026 | Uninitialized Use in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data vi... |
| CVE-2026-10970 | HIGH | 8.3 | 0.3% | Jun 4, 2026 | Insufficient validation of untrusted input in InterestGroups in Google Chrome prior to 149.0.7827.53 allowed a remote at... |
| CVE-2026-10969 | HIGH | 7.5 | 0.3% | Jun 4, 2026 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attack... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now