apk package
chainguard/chromium
pkg:apk/chainguard/chromium
Vulnerabilities (2,281)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-9975 | Hig | 8.3 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Out of bounds read and write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9974 | Hig | 8.3 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9973 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Out of bounds write in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9972 | Hig | 8.3 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Uninitialized Use in Gamepad in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9971 | Med | 5.4 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Inappropriate implementation in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9970 | Hig | 8.3 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in WebGL in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9969 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9968 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Integer overflow in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9967 | Cri | 9.6 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9966 | Hig | 8.3 | < 148.0.7778.216-r0 | 148.0.7778.216-r0 | May 28, 2026 | Integer overflow in XML in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9965 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9964 | Hig | 8.1 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in Bluetooth in Google Chrome on Mac prior to 148.0.7778.216 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: High) | |
| CVE-2026-9963 | Hig | 7.5 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Uninitialized Use in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9962 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in WebRTC in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9961 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in SurfaceCapture in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9960 | Hig | 7.5 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Integer overflow in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted font file. (Chromium security severity: High) | |
| CVE-2026-9959 | Low | 3.1 | < 148.0.7778.216-r0 | 148.0.7778.216-r0 | May 28, 2026 | Race in WebRTC in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High) | |
| CVE-2026-9958 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High) | |
| CVE-2026-9957 | Hig | 8.8 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in PDF in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: High) | |
| CVE-2026-9956 | Hig | 7.5 | < 149.0.7827.53-r0 | 149.0.7827.53-r0 | May 28, 2026 | Use after free in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) |
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Out of bounds read and write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Out of bounds write in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Uninitialized Use in Gamepad in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Inappropriate implementation in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in WebGL in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Integer overflow in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Out of bounds write in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 148.0.7778.216-r0fixed 148.0.7778.216-r0
Integer overflow in XML in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Out of bounds write in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in Bluetooth in Google Chrome on Mac prior to 148.0.7778.216 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Uninitialized Use in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in WebRTC in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in SurfaceCapture in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Integer overflow in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted font file. (Chromium security severity: High)
- affected < 148.0.7778.216-r0fixed 148.0.7778.216-r0
Race in WebRTC in Google Chrome on Windows prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in PDFium in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in PDF in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: High)
- affected < 149.0.7827.53-r0fixed 149.0.7827.53-r0
Use after free in iOS in Google Chrome on iOS prior to 148.0.7778.216 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Page 64 of 115