PatchSiren

Google CVE debriefs · Page 37

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Google CVE published 2026-06-04

CVE-2026-10914

CVE-2026-10914 is a high-severity vulnerability in Google Chrome on Windows, caused by a use-after-free issue in ANGLE. The vulnerability, which has a CVSS score of 8.8, allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The issue was addressed in Google Chrome version 149.0.7827.53.

HIGH Google CVE published 2026-06-04

CVE-2026-10913

CVE-2026-10913 is a high-severity vulnerability in Google Chrome on Windows, caused by a use-after-free issue in ANGLE. The vulnerability, which has a CVSS score of 8.8, allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. This issue was addressed in Google Chrome version 149.0.7827.53.

MEDIUM Google CVE published 2026-06-04

CVE-2026-10912

CVE-2026-10912 is a vulnerability in Google Chrome prior to version 149.0.7827.53. The issue is related to Insufficient validation of untrusted input in Extensions, which could allow a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. The Chromium security severity of this vulnerability is High, and it has a CVSS score of 6.5, categorized as MEDIUM.

HIGH Google CVE published 2026-06-04

CVE-2026-10911

CVE-2026-10911 is a High-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The issue involves insufficient validation of untrusted input in the Media component, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

HIGH Google CVE published 2026-06-04

CVE-2026-10910

CVE-2026-10910 is a High-severity vulnerability in Google Chrome prior to 149.0.7827.53. The vulnerability is caused by a Type Confusion in V8, which allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The CVSS score for this vulnerability is 8.8, indicating a High severity level.

HIGH Google CVE published 2026-06-04

CVE-2026-10909

CVE-2026-10909 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is a use-after-free issue in Dawn, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a high level of severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10908

CVE-2026-10908 is a high-severity vulnerability in Google Chrome on Windows, allowing a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the FullScreen component. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code in the context of the renderer process.

HIGH Google CVE published 2026-06-04

CVE-2026-10907

CVE-2026-10907 is an out of bounds write vulnerability in ANGLE in Google Chrome prior to 149.0.7827.53. A remote attacker could potentially exploit heap corruption via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered High severity by Chromium. It was published on [cvePublishedAt] and last modified on [cveModifiedAt].

HIGH Google CVE published 2026-06-04

CVE-2026-10906

CVE-2026-10906 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is caused by a use-after-free issue in the WebAuthentication component. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures, potentially leading to heap corruption via a crafted HTML page.

HIGH Google CVE published 2026-06-04

CVE-2026-10905

CVE-2026-10905 is a Use after free vulnerability in the Network component of Google Chrome prior to version 149.0.7827.53. This vulnerability has been rated as High severity with a CVSS score of 8.3. An attacker who has compromised the renderer process can potentially exploit this vulnerability to perform a sandbox escape via a crafted HTML page.

HIGH Google CVE published 2026-06-04

CVE-2026-10904

CVE-2026-10904 is a High-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This issue is caused by an inappropriate implementation in V8, which allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as High severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10903

CVE-2026-10903 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in WebRTC could allow a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered High severity by Chromium. It was published on [cvePublishedAt] and last modified on [cveModifiedAt].

HIGH Google CVE published 2026-06-04

CVE-2026-10902

CVE-2026-10902 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in the Ozone component allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.

HIGH Google CVE published 2026-06-04

CVE-2026-10901

CVE-2026-10901 is a high-severity vulnerability in Google Chrome on Mac, allowing remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Passwords component of Google Chrome. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures.

HIGH Google CVE published 2026-06-04

CVE-2026-10900

CVE-2026-10900 is a high-severity vulnerability in Google Chrome on Mac, allowing potential heap corruption via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Passwords component. An attacker could exploit this vulnerability by convincing a user to engage in specific UI gestures.

HIGH Google CVE published 2026-06-04

CVE-2026-10899

CVE-2026-10899 is a high-severity vulnerability in Google Chrome on Linux, allowing remote attackers to potentially exploit heap corruption via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Ozone component of Google Chrome. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures.

HIGH Google CVE published 2026-06-04

CVE-2026-10898

CVE-2026-10898 is a Critical stack buffer overflow vulnerability in Google Chrome prior to version 149.0.7827.53. This vulnerability allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a High severity level.

HIGH Google CVE published 2026-06-04

CVE-2026-10897

A critical vulnerability, CVE-2026-10897, was discovered in Google Chrome's GPU implementation. This inappropriate implementation could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered HIGH severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10896

CVE-2026-10896 is a high-severity vulnerability in Google Chrome for iOS prior to version 149.0.7827.53. This use-after-free vulnerability allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered Critical by Chromium security severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10895

CVE-2026-10895 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in the Ozone component allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.

HIGH Google CVE published 2026-06-04

CVE-2026-10894

CVE-2026-10894 is a high-severity vulnerability in Google Chrome on Linux, allowing a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Printing component.

HIGH Google CVE published 2026-06-04

CVE-2026-10893

CVE-2026-10893 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in Chromoting allows remote attackers to execute arbitrary code via malicious network traffic. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.

CRITICAL Google CVE published 2026-06-04

CVE-2026-10892

CVE-2026-10892 is a Critical vulnerability in Google Chrome on Android prior to 149.0.7827.53. The vulnerability is an out of bounds write in GPU, which could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 9.6, indicating a high severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10891

CVE-2026-10891 is a critical vulnerability in Google Chrome on Linux, caused by a use-after-free issue in the GFX component. This vulnerability, with a CVSS score of 8.8, could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. The vulnerability was published on [cvePublishedAt] and modified on [cveModifiedAt].

HIGH Google CVE published 2026-06-04

CVE-2026-10889

CVE-2026-10889 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The issue is an out-of-bounds read in ANGLE, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a high level of severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10888

CVE-2026-10888 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is a use-after-free issue in Cast Streaming, which could allow an attacker on the local network segment to execute arbitrary code via malicious network traffic. The CVSS score for this vulnerability is 8.8, indicating a high severity. The vulnerability was published on [cvePublishedAt] and mo [truncated]

HIGH Google CVE published 2026-06-04

CVE-2026-10887

CVE-2026-10887 is a high-severity vulnerability in Google Chrome on Mac, allowing remote attackers to execute arbitrary code via malicious network traffic. The vulnerability is caused by a use-after-free issue in Chromoting, with a CVSS score of 8.1. It was published on [cvePublishedAt] and modified on [cveModifiedAt].

CRITICAL Google CVE published 2026-06-04

CVE-2026-10886

CVE-2026-10886 is a critical vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is caused by a use after free in the FileSystem component, which could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 9.6, indicating a high severity.

HIGH Google CVE published 2026-06-04

CVE-2026-10885

CVE-2026-10885 is a critical use-after-free vulnerability in Google Chrome for iOS prior to version 149.0.7827.53. This vulnerability allowed a remote attacker to execute arbitrary code via a crafted HTML page. The CVSS score for this vulnerability is 8.8, indicating a high severity. The vulnerability was published on [cvePublishedAt] and modified on [cveModifiedAt].

HIGH Google CVE published 2026-06-04

CVE-2026-10884

CVE-2026-10884 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in Chromecast could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The vulnerability has a CVSS score of 8.3 and is classified as HIGH.