🔓 VULNERABILITIES & CVEs
-
Google Chrome 150.0.7871.182 fixes multiple high-severity vulnerabilities — CVE ThreatInt
Google Chrome versions prior to 150.0.7871.182 contain multiple high-severity security flaws.- Applies to Google Chrome on Android, Linux, and desktop prior to version 150.0.7871.182
- Vulnerabilities include use-after-free, stack buffer overflow, out-of-bounds read/write, integer overflow, and insufficient input validation
- Exploits enable remote attackers to execute arbitrary code, perform sandbox escapes, heap corruption, domain spoofing, and data leaks
- Attack vectors involve crafted HTML pages, malicious network traffic, and user interaction with UI gestures
- Notable affected components: GPU, UI, Certificate validation, ANGLE, V8 engine, Skia, Chromecast, Extensions, WebAudio
-
CVE-2026-62574 — CVSS 7.8 — Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM E...
-
CVE-2026-56819 — CVSS 7.5 — Netty: HTTP/2 decompression leaks ByteBuf reference count when the decompress...
-
CVE-2026-56816 — CVSS 7.5 — Netty: Memory Exhaustion via HTTP/3 Reserved Frame TypesNetty is a network ap...
-
CVE-2026-65319 — CVSS 7.5 — Feedbin Unauthenticated Entry Content Disclosure via GET /api/v2/entries/:id/...
-
CVE-2026-63142 — CVSS 5.0 — Incomplete List of Disallowed Inputs in Kibana Leading to Server-Side Request...
-
CVE-2026-63143 — CVSS 4.3 — Missing Authorization in Kibana Leading to Unauthorized Information Disclosur...
-
CVE-2026-16485 — CVSS 4.3 — SourceCodester Class and Exam Timetabling System class.php cross site scripti...
-
CVE-2026-56817 — CVSS — — Netty: XML External Entity (XXE) injection via unconfigured XML factory when ...