|
361
|
9.6 |
CRITICAL
Network
|
-
|
-
|
Integer overflow in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (…
New
|
CWE-472 CWE-190
External Control of Assumed-Immutable Web Parameter Integer Overflow or Wraparound
|
CVE-2026-11088
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
362
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Uninitialized Use in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium secu…
New
|
CWE-457
Use of Uninitialized Variable
|
CVE-2026-11087
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
363
|
8.8 |
HIGH
Network
|
-
|
-
|
Use after free in Views in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted H…
New
|
CWE-416
Use After Free
|
CVE-2026-11042
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
364
|
8.3 |
HIGH
Network
|
-
|
-
|
Use after free in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Ch…
New
|
CWE-416
Use After Free
|
CVE-2026-11040
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
365
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Insufficient policy enforcement in Subresource Integrity in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to bypass content security policy via malicious network traffic. (Chromium s…
New
|
CWE-20
Improper Input Validation
|
CVE-2026-11038
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
366
|
9.6 |
CRITICAL
Network
|
-
|
-
|
Out of bounds write in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-11037
|
2026-06-6 02:16 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
367
|
6.5 |
MEDIUM
Network
|
-
|
-
|
CVX is not resilient to unexpected messages from a connected switch. This leads to agent crashes on CVX causing instability in the CVX cluster. An attacker could use this behavior to create a denial …
New
|
CWE-20
Improper Input Validation
|
CVE-2025-5090
|
2026-06-6 02:16 |
2026-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
368
|
6.5 |
MEDIUM
Network
|
-
|
-
|
In a CVX cluster, an EOS switch connected to a CVX server is not resilient to certain malformed messages received from the connected CVX server. Similarly, the CVX server is not resilient to certain …
New
|
CWE-20
Improper Input Validation
|
CVE-2025-5089
|
2026-06-6 02:16 |
2026-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
369
|
8.3 |
HIGH
Network
|
-
|
-
|
An authenticated Redis session could be used to obtain full root access to all servers in the CVX cluster. Note that this would require an attacker to have both network access to the Redis service on…
New
|
CWE-269
Improper Privilege Management
|
CVE-2025-5088
|
2026-06-6 02:16 |
2026-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
370
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in tittuvarghese CollegeManagementSystem 3e476335cfbfb9a049e09f474c7ec885f69a9df3/a38852979f7e27ae67b610dce5979500ef8ebe01. Affected is an unknown function of the file …
New
|
CWE-266 CWE-285
Incorrect Privilege Assignment Improper Authorization
|
CVE-2026-11336
|
2026-06-6 02:04 |
2026-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|