CVE Vulnerability Database

Search and browse 390,313 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-13789CRITICAL9.6Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer...
CVE-2026-13788HIGH8.8Use after free in Fullscreen in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to execute arb...
CVE-2026-13787HIGH8.1Use after free in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to execute arb...
CVE-2026-13786HIGH8.8Use after free in Ozone in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via ...
CVE-2026-13785CRITICAL9.6Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a use...
CVE-2026-13784HIGH8.8Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage...
CVE-2026-13783HIGH8.8Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage...
CVE-2026-13782CRITICAL10Use after free in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rend...
CVE-2026-13781CRITICAL9.6Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who...
CVE-2026-13780CRITICAL9.6Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker wh...
CVE-2026-13779HIGH8.1Use after free in Chromoting in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to execute ar...
CVE-2026-13778HIGH7.8Use after free in WebUSB in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to execute arbitrary co...
CVE-2026-13777HIGH8.8Insufficient validation of untrusted input in iOSWeb in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote att...
CVE-2026-13776CRITICAL9.8Type Confusion in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rendere...
CVE-2026-13775CRITICAL9.8Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer...
CVE-2026-13774HIGH8.1Use after free in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install...
CVE-2025-71381MEDIUM6.9Hono before 4.10.2 (fixed in 4.10.3) contains a flaw in its CORS middleware: when the origin is not set to "*", the midd...
CVE-2025-71374HIGH8.1picklescan before 0.0.29 fails to detect the built-in python profile.Profile.run function when used in pickle reduce met...
CVE-2025-71371HIGH8.1picklescan before 0.0.29 fails to detect malicious pickle files using code.InteractiveInterpreter.runcode in reduce meth...
CVE-2025-71368HIGH8.1picklescan before 0.0.30 fails to detect the doctest.debug_script function when analyzing pickle files, allowing attacke...
CVE-2025-71363HIGH8.1picklescan before 0.0.30 fails to detect cProfile.run function calls in pickle reduce methods, allowing attackers to exe...
CVE-2025-71355HIGH7.6Picklescan before 0.0.25 fails to detect unsafe global functions in the Numpy library, allowing attackers to bypass stat...
CVE-2025-71352HIGH8.1picklescan before 0.0.29 fails to detect the built-in Python trace.Trace.runctx function when used in pickle file reduce...
CVE-2025-71350HIGH8.1picklescan before 0.0.28 fails to detect malicious pickle files using torch.utils.collect_env.run function in reduce met...
CVE-2025-71349HIGH8.1picklescan before 0.0.29 fails to detect the built-in trace.Trace.run function when analyzing pickle files, allowing att...