CVE Vulnerability Database
Search and browse 390,272 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-14023 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Insufficient validation of untrusted input in SanitizerAPI in Google Chrome prior to 150.0.7871.47 allowed a remote atta... |
| CVE-2026-14022 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker ... |
| CVE-2026-14021 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker wh... |
| CVE-2026-14020 | MEDIUM | 4.3 | 0.2% | Jun 30, 2026 | Insufficient validation of untrusted input in WebXR in Google Chrome prior to 150.0.7871.47 allowed a remote attacker wh... |
| CVE-2026-14019 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cros... |
| CVE-2026-14018 | HIGH | 7.8 | 0.1% | Jun 30, 2026 | Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-leve... |
| CVE-2026-14017 | CRITICAL | 9.6 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Navigation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had com... |
| CVE-2026-14016 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-orig... |
| CVE-2026-14015 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Race in WebRTC in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data vi... |
| CVE-2026-14014 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI sp... |
| CVE-2026-14013 | MEDIUM | 4.3 | 0.2% | Jun 30, 2026 | Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoo... |
| CVE-2026-14012 | MEDIUM | 5.3 | 0.2% | Jun 30, 2026 | Side-channel information leakage in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain pote... |
| CVE-2026-14011 | HIGH | 8.1 | 0.2% | Jun 30, 2026 | Out of bounds read in SurfaceCapture in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform an out... |
| CVE-2026-14010 | MEDIUM | 6.5 | 0.3% | Jun 30, 2026 | Uninitialized Use in Codecs in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to obtain poten... |
| CVE-2026-14009 | HIGH | 8.8 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potential... |
| CVE-2026-14008 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Uninitialized Use in WebXR in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potent... |
| CVE-2026-14007 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Insufficient policy enforcement in PermissionsPolicy in Google Chrome prior to 150.0.7871.47 allowed a remote attacker t... |
| CVE-2026-14006 | HIGH | 8.8 | 0.2% | Jun 30, 2026 | Use after free in Navigation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code... |
| CVE-2026-14005 | HIGH | 8.8 | 0.2% | Jun 30, 2026 | Use after free in Omnibox in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a u... |
| CVE-2026-14004 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-orig... |
| CVE-2026-14003 | MEDIUM | 4.3 | 0.1% | Jun 30, 2026 | Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced ... |
| CVE-2026-14002 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Geolocation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had co... |
| CVE-2026-14001 | MEDIUM | 6.1 | 0.2% | Jun 30, 2026 | Inappropriate implementation in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbi... |
| CVE-2026-14000 | MEDIUM | 6.1 | 0.2% | Jun 30, 2026 | Inappropriate implementation in XML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrar... |
| CVE-2026-13999 | MEDIUM | 4.3 | 0.1% | Jun 30, 2026 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who... |
