CVE-2026-7922
published 2026-05-06CVE-2026-7922: Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML…
PriorityP344high8.3CVSS 3.1
AVNACHPRNUIRSCCHIHAH
EPSS
0.21%
10.8th percentile
Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | < 148.0.7778.96 | 148.0.7778.96 | |
| chrome | >= 148.0.7778.96 < 148.0.7778.96 | 148.0.7778.96 | |
| chrome_desktop | — | — |
CVSS provenance
nvdv3.18.3HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
vendor_redhat8.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2026-7922
vendor_chrome·2026-05-19·CVSS 8.3
CVE-2026-7922 [HIGH] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2026-7922
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2026-7922
Chrome
Stable Channel Update for Desktop: CVE-2026-7920
vendor_chrome·2026-05-05·CVSS 8.3
CVE-2026-7920 [HIGH] Stable Channel Update for Desktop: CVE-2026-7920
Stable Channel Update for Desktop
CVE-2026-7920: Use after free in Skia. Reported by Google on 2026-04-02 [N/A][ 499062376 ] High CVE-2026-7921: Use after free in Passwords
Reported by Google on 2026-04-02 [N/A][ 499449324 ] High CVE-2026-7922: Use after free in ServiceWorker
Severity: high
Red Hat
chromium-browser: Use after free in ServiceWorker
vendor_redhat·2026-05-05·CVSS 8.3
CVE-2026-7922 [HIGH] CWE-825 chromium-browser: Use after free in ServiceWorker
chromium-browser: Use after free in ServiceWorker
An use after free flaw was found in the ServiceWorker component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=499449324
Statement: Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.
GHSA
GHSA-7c63-p383-vgqc: Use after free in ServiceWorker in Google Chrome prior to 148
ghsa_unreviewed·2026-05-06
CVE-2026-7922 [HIGH] CWE-416 GHSA-7c63-p383-vgqc: Use after free in ServiceWorker in Google Chrome prior to 148
Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-17943 chromium-browser: chromium-browser: Inappropriate implementation in Parser
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17943 [MEDIUM] CVE-2026-17943 chromium-browser: chromium-browser: Inappropriate implementation in Parser
CVE-2026-17943 chromium-browser: chromium-browser: Inappropriate implementation in Parser
Inappropriate implementation in Parser in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17891 chromium: chromium-browser: Use after free in ANGLE [epel-all]
bugzilla·2026-07-30·CVSS 5.8
CVE-2026-17891 [MEDIUM] CVE-2026-17891 chromium: chromium-browser: Use after free in ANGLE [epel-all]
CVE-2026-17891 chromium: chromium-browser: Use after free in ANGLE [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Use after free in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17673 chromium-browser: chromium-browser: Integer overflow in QUIC
bugzilla·2026-07-30·CVSS 9.6
CVE-2026-17673 [CRITICAL] CVE-2026-17673 chromium-browser: chromium-browser: Integer overflow in QUIC
CVE-2026-17673 chromium-browser: chromium-browser: Integer overflow in QUIC
Integer overflow in QUIC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17705 chromium-browser: libxml: chromium-browser: Integer overflow in libxml
bugzilla·2026-07-30·CVSS 8.8
CVE-2026-17705 [HIGH] CVE-2026-17705 chromium-browser: libxml: chromium-browser: Integer overflow in libxml
CVE-2026-17705 chromium-browser: libxml: chromium-browser: Integer overflow in libxml
Integer overflow in libxml in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-18002 chromium: chromium-browser: Insufficient validation of untrusted input in Google Lens [fedora-all]
bugzilla·2026-07-30·CVSS 9.6
CVE-2026-18002 [CRITICAL] CVE-2026-18002 chromium: chromium-browser: Insufficient validation of untrusted input in Google Lens [fedora-all]
CVE-2026-18002 chromium: chromium-browser: Insufficient validation of untrusted input in Google Lens [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Insufficient validation of untrusted input in Google Lens in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17875 chromium-browser: chromium-browser: Use after free in PDFium
bugzilla·2026-07-30·CVSS 8.8
CVE-2026-17875 [HIGH] CVE-2026-17875 chromium-browser: chromium-browser: Use after free in PDFium
CVE-2026-17875 chromium-browser: chromium-browser: Use after free in PDFium
Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17700 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Actor
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17700 [MEDIUM] CVE-2026-17700 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Actor
CVE-2026-17700 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Actor
Insufficient validation of untrusted input in Actor in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17803 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Save to Drive
bugzilla·2026-07-30
CVE-2026-17803 [MEDIUM] CVE-2026-17803 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Save to Drive
CVE-2026-17803 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Save to Drive
Insufficient validation of untrusted input in Save to Drive in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted PDF file. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17926 chromium-browser: chromium-browser: Insufficient validation of untrusted input in DevTools
bugzilla·2026-07-30
CVE-2026-17926 [LOW] CVE-2026-17926 chromium-browser: chromium-browser: Insufficient validation of untrusted input in DevTools
CVE-2026-17926 chromium-browser: chromium-browser: Insufficient validation of untrusted input in DevTools
Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17785 chromium-browser: chromium-browser: Uninitialized Use in ANGLE
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17785 [MEDIUM] CVE-2026-17785 chromium-browser: chromium-browser: Uninitialized Use in ANGLE
CVE-2026-17785 chromium-browser: chromium-browser: Uninitialized Use in ANGLE
Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17877 chromium-browser: chromium-browser: Inappropriate implementation in Chromoting
bugzilla·2026-07-30·CVSS 8.4
CVE-2026-17877 [HIGH] CVE-2026-17877 chromium-browser: chromium-browser: Inappropriate implementation in Chromoting
CVE-2026-17877 chromium-browser: chromium-browser: Inappropriate implementation in Chromoting
Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via malicious network traffic. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17661 chromium-browser: chromium-browser: Use after free in Loader
bugzilla·2026-07-30·CVSS 8.8
CVE-2026-17661 [HIGH] CVE-2026-17661 chromium-browser: chromium-browser: Use after free in Loader
CVE-2026-17661 chromium-browser: chromium-browser: Use after free in Loader
Use after free in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17928 chromium: Chromium: Cross-origin data leakage via DataTransfer [epel-all]
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17928 [MEDIUM] CVE-2026-17928 chromium: Chromium: Cross-origin data leakage via DataTransfer [epel-all]
CVE-2026-17928 chromium: Chromium: Cross-origin data leakage via DataTransfer [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17757 chromium-browser: chromium-browser: Uninitialized Use in Skia
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17757 [MEDIUM] CVE-2026-17757 chromium-browser: chromium-browser: Uninitialized Use in Skia
CVE-2026-17757 chromium-browser: chromium-browser: Uninitialized Use in Skia
Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17743 chromium-browser: chromium-browser: Insufficient policy enforcement in ControlledFrame
bugzilla·2026-07-30
CVE-2026-17743 [MEDIUM] CVE-2026-17743 chromium-browser: chromium-browser: Insufficient policy enforcement in ControlledFrame
CVE-2026-17743 chromium-browser: chromium-browser: Insufficient policy enforcement in ControlledFrame
Insufficient policy enforcement in ControlledFrame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17781 chromium: chromium-browser: Inappropriate implementation in Extensions [fedora-all]
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17781 [MEDIUM] CVE-2026-17781 chromium: chromium-browser: Inappropriate implementation in Extensions [fedora-all]
CVE-2026-17781 chromium: chromium-browser: Inappropriate implementation in Extensions [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17794 chromium: chromium-browser: Insufficient validation of untrusted input in Mobile [fedora-all]
bugzilla·2026-07-30
CVE-2026-17794 [MEDIUM] CVE-2026-17794 chromium: chromium-browser: Insufficient validation of untrusted input in Mobile [fedora-all]
CVE-2026-17794 chromium: chromium-browser: Insufficient validation of untrusted input in Mobile [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Insufficient validation of untrusted input in Mobile in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17689 chromium: chromium-browser: Uninitialized Use in ANGLE [epel-all]
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17689 [MEDIUM] CVE-2026-17689 chromium: chromium-browser: Uninitialized Use in ANGLE [epel-all]
CVE-2026-17689 chromium: chromium-browser: Uninitialized Use in ANGLE [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17937 chromium-browser: chromium-browser: Inappropriate implementation in DevTools
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17937 [MEDIUM] CVE-2026-17937 chromium-browser: chromium-browser: Inappropriate implementation in DevTools
CVE-2026-17937 chromium-browser: chromium-browser: Inappropriate implementation in DevTools
Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17853 chromium: chromium-browser: Inappropriate implementation in DevTools [epel-all]
bugzilla·2026-07-30
CVE-2026-17853 [MEDIUM] CVE-2026-17853 chromium: chromium-browser: Inappropriate implementation in DevTools [epel-all]
CVE-2026-17853 chromium: chromium-browser: Inappropriate implementation in DevTools [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to inject scripts or HTML into a privileged page via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17896 chromium-browser: chromium-browser: Use after free in DevTools
bugzilla·2026-07-30·CVSS 7.5
CVE-2026-17896 [HIGH] CVE-2026-17896 chromium-browser: chromium-browser: Use after free in DevTools
CVE-2026-17896 chromium-browser: chromium-browser: Use after free in DevTools
Use after free in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17892 chromium-browser: chromium-browser: Inappropriate implementation in WebXR
bugzilla·2026-07-30·CVSS 6.5
CVE-2026-17892 [MEDIUM] CVE-2026-17892 chromium-browser: chromium-browser: Inappropriate implementation in WebXR
CVE-2026-17892 chromium-browser: chromium-browser: Inappropriate implementation in WebXR
Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17717 chromium-browser: chromium-browser: Integer overflow in ANGLE
bugzilla·2026-07-30·CVSS 9.6
CVE-2026-17717 [CRITICAL] CVE-2026-17717 chromium-browser: chromium-browser: Integer overflow in ANGLE
CVE-2026-17717 chromium-browser: chromium-browser: Integer overflow in ANGLE
Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17862 chromium-browser: chromium-browser: Use after free in Tracing
bugzilla·2026-07-30·CVSS 7.8
CVE-2026-17862 [HIGH] CVE-2026-17862 chromium-browser: chromium-browser: Use after free in Tracing
CVE-2026-17862 chromium-browser: chromium-browser: Use after free in Tracing
Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17791 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Payments
bugzilla·2026-07-30
CVE-2026-17791 [MEDIUM] CVE-2026-17791 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Payments
CVE-2026-17791 chromium-browser: chromium-browser: Insufficient validation of untrusted input in Payments
Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17865 chromium-browser: chromium-browser: Inappropriate implementation in Crypto
bugzilla·2026-07-30
CVE-2026-17865 [MEDIUM] CVE-2026-17865 chromium-browser: chromium-browser: Inappropriate implementation in Crypto
CVE-2026-17865 chromium-browser: chromium-browser: Inappropriate implementation in Crypto
Inappropriate implementation in Crypto in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17765 chromium-browser: chromium-browser: Inappropriate implementation in WebProtect
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17765 [MEDIUM] CVE-2026-17765 chromium-browser: chromium-browser: Inappropriate implementation in WebProtect
CVE-2026-17765 chromium-browser: chromium-browser: Inappropriate implementation in WebProtect
Inappropriate implementation in WebProtect in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-18017 chromium-browser: chromium-browser: Use after free in Dawn
bugzilla·2026-07-30·CVSS 8.8
CVE-2026-18017 [HIGH] CVE-2026-18017 chromium-browser: chromium-browser: Use after free in Dawn
CVE-2026-18017 chromium-browser: chromium-browser: Use after free in Dawn
Use after free in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-18005 chromium: chromium-browser: Inappropriate implementation in WebXR [fedora-all]
bugzilla·2026-07-30·CVSS 6.5
CVE-2026-18005 [MEDIUM] CVE-2026-18005 chromium: chromium-browser: Inappropriate implementation in WebXR [fedora-all]
CVE-2026-18005 chromium: chromium-browser: Inappropriate implementation in WebXR [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17932 chromium-browser: chromium-browser: Use after free in DataTransfer
bugzilla·2026-07-30·CVSS 5.5
CVE-2026-17932 [MEDIUM] CVE-2026-17932 chromium-browser: chromium-browser: Use after free in DataTransfer
CVE-2026-17932 chromium-browser: chromium-browser: Use after free in DataTransfer
Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
Bugzilla
CVE-2026-17817 chromium: chromium-browser: Inappropriate implementation in ReportingAndNEL [fedora-all]
bugzilla·2026-07-30·CVSS 4.3
CVE-2026-17817 [MEDIUM] CVE-2026-17817 chromium: chromium-browser: Inappropriate implementation in ReportingAndNEL [fedora-all]
CVE-2026-17817 chromium: chromium-browser: Inappropriate implementation in ReportingAndNEL [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Inappropriate implementation in ReportingAndNEL in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17768 chromium: chromium-browser: Insufficient validation of untrusted input in WebSockets [epel-all]
bugzilla·2026-07-30
CVE-2026-17768 [MEDIUM] CVE-2026-17768 chromium: chromium-browser: Insufficient validation of untrusted input in WebSockets [epel-all]
CVE-2026-17768 chromium: chromium-browser: Insufficient validation of untrusted input in WebSockets [epel-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Insufficient validation of untrusted input in WebSockets in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-17712 chromium-browser: chromium-browser: Race in Skia
bugzilla·2026-07-30·CVSS 8.8
CVE-2026-17712 [HIGH] CVE-2026-17712 chromium-browser: chromium-browser: Race in Skia
CVE-2026-17712 chromium-browser: chromium-browser: Race in Skia
Race in Skia in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Bugzilla
CVE-2026-17735 chromium: Chromium: Sandbox escape via crafted HTML page in BFCache [fedora-all]
bugzilla·2026-07-30
CVE-2026-17735 [MEDIUM] CVE-2026-17735 chromium: Chromium: Sandbox escape via crafted HTML page in BFCache [fedora-all]
CVE-2026-17735 chromium: Chromium: Sandbox escape via crafted HTML page in BFCache [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Insufficient validation of untrusted input in BFCache in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Bugzilla
CVE-2026-7922 chromium-browser: Use after free in ServiceWorker
bugzilla·2026-05-06·CVSS 8.3
CVE-2026-7922 [HIGH] CVE-2026-7922 chromium-browser: Use after free in ServiceWorker
CVE-2026-7922 chromium-browser: Use after free in ServiceWorker
Use after free in ServiceWorker in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Rapid7
Patch Tuesday - May 2026
blogs_rapid7·2026-05-13·CVSS 10.0
CVE-2026-41089 [CRITICAL] Patch Tuesday - May 2026
Microsoft is publishing 137 vulnerabilities on May 2026 Patch Tuesday . Microsoft is not aware of exploitation in the wild or public disclosure for any of these vulnerabilities. So far this month, Microsoft has provided patches to address 133 browser vulnerabilities, which are not included in the Patch Tuesday count above.
## Windows Netlogon: critical RCE
Anyone responsible for securing a domain controller should prioritize remediation of CVE-2026-41089 , which is a critical stack-based buffer overflow in Windows Netlogon with a CVSS v3 base score of 9.8. Exploitation leads to execution in the context of the Netlogon service, so that’s SYSTEM privileges on the domain controller. For most pentesters, that’s the point at which the customer report more or less writes itself. No privileges
2026-05-06
Published