These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-10914 is a high-severity vulnerability in Google Chrome on Windows, caused by a use-after-free issue in ANGLE. The vulnerability, which has a CVSS score of 8.8, allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The issue was addressed in Google Chrome version 149.0.7827.53.
CVE-2026-10913 is a high-severity vulnerability in Google Chrome on Windows, caused by a use-after-free issue in ANGLE. The vulnerability, which has a CVSS score of 8.8, allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. This issue was addressed in Google Chrome version 149.0.7827.53.
CVE-2026-10912 is a vulnerability in Google Chrome prior to version 149.0.7827.53. The issue is related to Insufficient validation of untrusted input in Extensions, which could allow a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page. The Chromium security severity of this vulnerability is High, and it has a CVSS score of 6.5, categorized as MEDIUM.
CVE-2026-10911 is a High-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The issue involves insufficient validation of untrusted input in the Media component, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2026-10910 is a High-severity vulnerability in Google Chrome prior to 149.0.7827.53. The vulnerability is caused by a Type Confusion in V8, which allows a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The CVSS score for this vulnerability is 8.8, indicating a High severity level.
CVE-2026-10909 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is a use-after-free issue in Dawn, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a high level of severity.
CVE-2026-10908 is a high-severity vulnerability in Google Chrome on Windows, allowing a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the FullScreen component. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code in the context of the renderer process.
CVE-2026-10907 is an out of bounds write vulnerability in ANGLE in Google Chrome prior to 149.0.7827.53. A remote attacker could potentially exploit heap corruption via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered High severity by Chromium. It was published on [cvePublishedAt] and last modified on [cveModifiedAt].
CVE-2026-10906 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is caused by a use-after-free issue in the WebAuthentication component. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures, potentially leading to heap corruption via a crafted HTML page.
CVE-2026-10905 is a Use after free vulnerability in the Network component of Google Chrome prior to version 149.0.7827.53. This vulnerability has been rated as High severity with a CVSS score of 8.3. An attacker who has compromised the renderer process can potentially exploit this vulnerability to perform a sandbox escape via a crafted HTML page.
CVE-2026-10904 is a High-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This issue is caused by an inappropriate implementation in V8, which allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as High severity.
CVE-2026-10903 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in WebRTC could allow a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered High severity by Chromium. It was published on [cvePublishedAt] and last modified on [cveModifiedAt].
CVE-2026-10902 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in the Ozone component allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.
CVE-2026-10901 is a high-severity vulnerability in Google Chrome on Mac, allowing remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Passwords component of Google Chrome. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures.
CVE-2026-10900 is a high-severity vulnerability in Google Chrome on Mac, allowing potential heap corruption via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Passwords component. An attacker could exploit this vulnerability by convincing a user to engage in specific UI gestures.
CVE-2026-10899 is a high-severity vulnerability in Google Chrome on Linux, allowing remote attackers to potentially exploit heap corruption via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Ozone component of Google Chrome. An attacker can exploit this vulnerability by convincing a user to engage in specific UI gestures.
CVE-2026-10898 is a Critical stack buffer overflow vulnerability in Google Chrome prior to version 149.0.7827.53. This vulnerability allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a High severity level.
A critical vulnerability, CVE-2026-10897, was discovered in Google Chrome's GPU implementation. This inappropriate implementation could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered HIGH severity.
CVE-2026-10896 is a high-severity vulnerability in Google Chrome for iOS prior to version 149.0.7827.53. This use-after-free vulnerability allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is considered Critical by Chromium security severity.
CVE-2026-10895 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in the Ozone component allows remote attackers to execute arbitrary code via a crafted HTML page. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.
CVE-2026-10894 is a high-severity vulnerability in Google Chrome on Linux, allowing a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The vulnerability is caused by a use-after-free issue in the Printing component.
CVE-2026-10893 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in Chromoting allows remote attackers to execute arbitrary code via malicious network traffic. The vulnerability has a CVSS score of 8.8 and is classified as HIGH.
CVE-2026-10892 is a Critical vulnerability in Google Chrome on Android prior to 149.0.7827.53. The vulnerability is an out of bounds write in GPU, which could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 9.6, indicating a high severity.
CVE-2026-10891 is a critical vulnerability in Google Chrome on Linux, caused by a use-after-free issue in the GFX component. This vulnerability, with a CVSS score of 8.8, could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. The vulnerability was published on [cvePublishedAt] and modified on [cveModifiedAt].
CVE-2026-10889 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The issue is an out-of-bounds read in ANGLE, which could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 8.3, indicating a high level of severity.
CVE-2026-10888 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is a use-after-free issue in Cast Streaming, which could allow an attacker on the local network segment to execute arbitrary code via malicious network traffic. The CVSS score for this vulnerability is 8.8, indicating a high severity. The vulnerability was published on [cvePublishedAt] and mo [truncated]
CVE-2026-10887 is a high-severity vulnerability in Google Chrome on Mac, allowing remote attackers to execute arbitrary code via malicious network traffic. The vulnerability is caused by a use-after-free issue in Chromoting, with a CVSS score of 8.1. It was published on [cvePublishedAt] and modified on [cveModifiedAt].
CVE-2026-10886 is a critical vulnerability in Google Chrome prior to version 149.0.7827.53. The vulnerability is caused by a use after free in the FileSystem component, which could allow a remote attacker to potentially perform a sandbox escape via a crafted HTML page. The CVSS score for this vulnerability is 9.6, indicating a high severity.
CVE-2026-10885 is a critical use-after-free vulnerability in Google Chrome for iOS prior to version 149.0.7827.53. This vulnerability allowed a remote attacker to execute arbitrary code via a crafted HTML page. The CVSS score for this vulnerability is 8.8, indicating a high severity. The vulnerability was published on [cvePublishedAt] and modified on [cveModifiedAt].
CVE-2026-10884 is a high-severity vulnerability in Google Chrome prior to version 149.0.7827.53. This use-after-free issue in Chromecast could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. The vulnerability has a CVSS score of 8.3 and is classified as HIGH.