Aggregator
Please support the site operations by clicking ads.
[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
1 month 1 week hence
[Virtual Event] Building a Secure AI Strategy for the Enterprise
4 days 19 hours hence
ShinyHunters hacker reportedly detained in Jordan, aiding FBI
21 minutes 24 seconds ago
A suspected ShinyHunters hacking group member known online as "Rey" has reportedly been detained in Jordan and is cooperating with the FBI to help locate other members of the extortion group. [...]
Lawrence Abrams
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
1 hour 8 minutes ago
原域名已变更且将在2024年彻底废弃,请访问 https://govuln.com/news/ 查看新的RSS订阅
CVE-2026-102310 | Google Chrome up to 154.0.8037.57 Payments improper authorization (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability was found in Google Chrome. It has been rated as critical. The affected element is an unknown function of the component Payments. Performing a manipulation results in improper authorization.
This vulnerability is reported as CVE-2026-102310. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-102308 | Google Chrome up to 154.0.8037.57 Views use after free (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability has been found in Google Chrome and classified as critical. This affects an unknown part of the component Views. The manipulation leads to use after free.
This vulnerability is listed as CVE-2026-102308. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.
vuldb.com
CVE-2026-102309 | Google Chrome up to 154.0.8037.57 FullScreen use after free (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability was found in Google Chrome and classified as critical. This vulnerability affects unknown code of the component FullScreen. The manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-102309. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-102307 | Google Chrome up to 154.0.8037.57 Dawn uninitialized resource (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability, which was classified as critical, has been found in Google Chrome. This affects an unknown function of the component Dawn. This manipulation causes uninitialized resource.
This vulnerability is tracked as CVE-2026-102307. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-102306 | Google Chrome up to 154.0.8037.57 Bluetooth use after free (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability, which was classified as critical, has been found in Google Chrome. Affected by this vulnerability is an unknown functionality of the component Bluetooth. Performing a manipulation results in use after free.
This vulnerability is identified as CVE-2026-102306. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-102304 | Google Chrome up to 154.0.8037.57 Passwords use after free (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability classified as critical was found in Google Chrome. Affected is an unknown function of the component Passwords. Such manipulation leads to use after free.
This vulnerability is referenced as CVE-2026-102304. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-102305 | Google Chrome up to 154.0.8037.57 SignIn inclusion of functionality from untrusted control sphere (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability, which was classified as critical, was found in Google Chrome. Affected by this issue is some unknown functionality of the component SignIn. Executing a manipulation can lead to inclusion of functionality from untrusted control sphere.
This vulnerability is tracked as CVE-2026-102305. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2026-102303 | Google Chrome up to 154.0.8037.57 GPU uninitialized resource (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability classified as problematic was found in Google Chrome. The impacted element is an unknown function of the component GPU. The manipulation results in uninitialized resource.
This vulnerability is identified as CVE-2026-102303. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-102301 | Google Chrome up to 154.0.8037.57 GPU out-of-bounds write (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability marked as critical has been reported in Google Chrome. The impacted element is an unknown function of the component GPU. The manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2026-102301. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-102302 | Google Chrome up to 154.0.8037.57 V8 buffer overflow (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability classified as critical has been found in Google Chrome. This impacts an unknown function of the component V8. This manipulation causes buffer overflow.
The identification of this vulnerability is CVE-2026-102302. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-102300 | Google Chrome up to 154.0.8037.57 WebGPU uninitialized pointer (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability was found in Google Chrome. It has been declared as problematic. This affects an unknown part of the component WebGPU. The manipulation results in uninitialized pointer.
This vulnerability is reported as CVE-2026-102300. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-102299 | Google Chrome up to 154.0.8037.57 V8 type confusion (WID-SEC-2026-3648)
3 hours 38 minutes ago
A vulnerability described as critical has been identified in Google Chrome. This affects an unknown function of the component V8. The manipulation results in type confusion.
This vulnerability was named CVE-2026-102299. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
Телефон стал разведчиком. Хакеры охотятся на iPhone и Android украинских военных
4 hours 25 minutes ago
DarkSword и два Android-вредоноса вытаскивают переписки, контакты и геолокацию.
CVE-2026-84961 | undici up to 7.29.0/8.10.1 BalancedPool BalancedPool constructor connect/tls certificate validation (Nessus ID 352183 / WID-SEC-2026-3640)
4 hours 25 minutes ago
A vulnerability marked as problematic has been reported in undici up to 7.29.0/8.10.1. Affected by this issue is the function BalancedPool constructor of the component BalancedPool. Performing a manipulation of the argument connect/tls results in improper certificate validation.
This vulnerability is identified as CVE-2026-84961. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-85152 | OpenJS Foundation Undici up to 8.10.1 Cache cross-domain policy (Nessus ID 352183 / WID-SEC-2026-3640)
4 hours 25 minutes ago
A vulnerability was found in OpenJS Foundation Undici up to 8.10.1. It has been rated as problematic. This affects an unknown function of the component Cache. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is uniquely identified as CVE-2026-85152. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.
vuldb.com