Search CVE reports


Toggle filters

11 – 20 of 3796 results


CVE-2026-2316

Medium priority
Not affected

Insufficient policy enforcement in Frames in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2026-2315

Medium priority
Not affected

Inappropriate implementation in WebGPU in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2026-2314

Medium priority
Not affected

Heap buffer overflow in Codecs in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2026-2313

Medium priority
Not affected

Use after free in CSS in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2026-25646

Medium priority

Some fixes available 6 of 8

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. Prior to 1.6.55, an out-of-bounds read vulnerability exists in the png_set_quantize() API...

5 affected packages

libpng, firefox, thunderbird, chromium-browser, libpng1.6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng Not in release Not in release
firefox Not affected Not affected
thunderbird Not affected Not affected
chromium-browser Not affected Not affected
libpng1.6 Fixed Fixed Fixed Fixed
Show less packages

CVE-2026-1862

Medium priority
Not affected

Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2026-1861

Medium priority
Not affected

Heap buffer overflow in libvpx in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages

CVE-2025-28164

Medium priority
Fixed

Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via png_create_read_struct() function.

5 affected packages

libpng, firefox, thunderbird, chromium-browser, libpng1.6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng Not in release Not in release
firefox Not affected Not affected
thunderbird Not affected Not affected
chromium-browser Not affected Not affected
libpng1.6 Fixed Not affected Not affected Not affected
Show less packages

CVE-2025-28162

Medium priority
Fixed

Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via the pngimage with AddressSanitizer (ASan), the program leaks memory in various locations, eventually leading to high...

5 affected packages

libpng, firefox, thunderbird, chromium-browser, libpng1.6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libpng Not in release Not in release
firefox Not affected Not affected
thunderbird Not affected Not affected
chromium-browser Not affected Not affected
libpng1.6 Fixed Not affected Not affected Not affected
Show less packages

CVE-2026-0908

Medium priority
Not affected

Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)

1 affected package

chromium-browser

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected
Show less packages