Aggregator
2026-05-31: Seven days of scans and probes and web traffic hitting my web server
3 weeks 3 days hence
Weekly Threat Bulletin – July 1st, 2026
10 hours 15 minutes hence
These are the top threats you should know about this week.
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
6 minutes 28 seconds ago
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
CVE-2026-14108 | Google Chrome up to 149.0.7827.201 PDFium use after free
1 hour 14 minutes ago
A vulnerability has been found in Google Chrome and classified as critical. The affected element is an unknown function of the component PDFium. Performing a manipulation results in use after free.
This vulnerability is known as CVE-2026-14108. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.
vuldb.com
CVE-2026-14103 | Google Chrome up to 149.0.7827.201 on ChromeOS SSL use after free (ID 513465)
1 hour 18 minutes ago
A vulnerability, which was classified as critical, was found in Google Chrome on ChromeOS. Impacted is an unknown function of the component SSL. Such manipulation leads to use after free.
This vulnerability is traded as CVE-2026-14103. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.
vuldb.com
CVE-2026-14104 | Google Chrome up to 149.0.7827.201 WebAppInstalls sandbox (ID 513484)
1 hour 18 minutes ago
A vulnerability, which was classified as critical, has been found in Google Chrome. This issue affects some unknown processing of the component WebAppInstalls. This manipulation causes sandbox issue.
This vulnerability appears as CVE-2026-14104. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-14100 | Google Chrome up to 149.0.7827.201 NetworkCache cross-domain policy (ID 513383)
1 hour 19 minutes ago
A vulnerability classified as problematic was found in Google Chrome. This vulnerability affects unknown code of the component NetworkCache. The manipulation results in permissive cross-domain policy with untrusted domains.
This vulnerability is reported as CVE-2026-14100. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-14107 | Google Chrome up to 149.0.7827.201 Scheduling use after free (ID 513544)
1 hour 19 minutes ago
A vulnerability classified as critical has been found in Google Chrome. This affects an unknown part of the component Scheduling. The manipulation leads to use after free.
This vulnerability is documented as CVE-2026-14107. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-14102 | Google Chrome up to 149.0.7827.201 Passwords use after free (ID 513455)
1 hour 19 minutes ago
A vulnerability described as critical has been identified in Google Chrome. Affected by this issue is some unknown functionality of the component Passwords. Executing a manipulation can lead to use after free.
This vulnerability is registered as CVE-2026-14102. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-14097 | Google Chrome up to 149.0.7827.201 on macOS WebAppInstalls sandbox (ID 513333)
1 hour 19 minutes ago
A vulnerability marked as critical has been reported in Google Chrome on macOS. Affected by this vulnerability is an unknown functionality of the component WebAppInstalls. Performing a manipulation results in sandbox issue.
This vulnerability is cataloged as CVE-2026-14097. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-14098 | Google Chrome up to 149.0.7827.201 CSS cross-domain policy (ID 513375)
1 hour 19 minutes ago
A vulnerability labeled as problematic has been found in Google Chrome. Affected is an unknown function of the component CSS. Such manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is listed as CVE-2026-14098. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
vuldb.com
CVE-2026-14093 | Google Chrome up to 149.0.7827.201 Cast use after free (ID 513240)
1 hour 20 minutes ago
A vulnerability identified as critical has been detected in Google Chrome. This impacts an unknown function of the component Cast. This manipulation causes use after free.
This vulnerability is tracked as CVE-2026-14093. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2026-14092 | Google Chrome up to 149.0.7827.201 Privacy cross-domain policy (ID 513212)
1 hour 20 minutes ago
A vulnerability categorized as problematic has been discovered in Google Chrome. This affects an unknown function of the component Privacy. The manipulation results in permissive cross-domain policy with untrusted domains.
This vulnerability is identified as CVE-2026-14092. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-14087 | Google Chrome up to 149.0.7827.201 on Windows WebNN heap-based overflow (ID 513177)
1 hour 20 minutes ago
A vulnerability was found in Google Chrome on Windows. It has been rated as critical. The impacted element is an unknown function of the component WebNN. The manipulation leads to heap-based buffer overflow.
This vulnerability is referenced as CVE-2026-14087. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-14091 | Google Chrome up to 149.0.7827.201 DevTools use after free (ID 513208)
1 hour 20 minutes ago
A vulnerability was found in Google Chrome. It has been declared as critical. The affected element is an unknown function of the component DevTools. Executing a manipulation can lead to use after free.
The identification of this vulnerability is CVE-2026-14091. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-14090 | Google Chrome up to 149.0.7827.201 on ChromeOS CameraCapture out-of-bounds (ID 513194)
1 hour 20 minutes ago
A vulnerability was found in Google Chrome on ChromeOS. It has been classified as problematic. Impacted is an unknown function of the component CameraCapture. Performing a manipulation results in out-of-bounds read.
This vulnerability was named CVE-2026-14090. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-14089 | Google Chrome up to 149.0.7827.201 PopupBlocker clickjacking (ID 513188)
1 hour 20 minutes ago
A vulnerability was found in Google Chrome and classified as problematic. This issue affects some unknown processing of the component PopupBlocker. Such manipulation leads to clickjacking.
This vulnerability is uniquely identified as CVE-2026-14089. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-14085 | Google Chrome up to 149.0.7827.201 CSS improper protection of physical side channels (ID 513155)
1 hour 20 minutes ago
A vulnerability has been found in Google Chrome and classified as problematic. This vulnerability affects unknown code of the component CSS. This manipulation causes improper protection of physical side channels.
This vulnerability is handled as CVE-2026-14085. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2026-14084 | Google Chrome up to 149.0.7827.201 Chromoting heap-based overflow (ID 513138)
1 hour 22 minutes ago
A vulnerability, which was classified as critical, was found in Google Chrome. This affects an unknown part of the component Chromoting. The manipulation results in heap-based buffer overflow.
This vulnerability is known as CVE-2026-14084. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
vuldb.com