Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2026-13037

CVE-2026-13037_CVE-2026-13037

Use after free in WebView in Google Chrome on Android prior to 149.0.7827.197 allowed a local attacker to execute arbitrary code inside a sandbox v...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13036

CVE-2026-13036_CVE-2026-13036

Use after free in Blink in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13035

CVE-2026-13035_CVE-2026-13035

Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a malicious per...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13033

CVE-2026-13033_CVE-2026-13033

Out of bounds read and write in Blink>InterestGroups in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code v...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13031

CVE-2026-13031_CVE-2026-13031

Use after free in Blink in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted...

Google Chrome 149.0.7827.197 CVE
HIGH 7.5 CVE-2026-13029

CVE-2026-13029_CVE-2026-13029

Use after free in Web Authentication in Google Chrome prior to 149.0.7827.197 allowed an attacker who convinced a user to install a malicious exten...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13027

CVE-2026-13027_CVE-2026-13027

Use after free in FileSystem in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to potentially exploit heap corruption via a crafte...

Google Chrome 149.0.7827.197 CVE
HIGH 8.8 CVE-2026-13026

CVE-2026-13026_CVE-2026-13026

Use after free in Digital Credentials in Google Chrome on Mac prior to 149.0.7827.197 allowed a remote attacker to potentially exploit heap corrupt...

Google Chrome 149.0.7827.197 CVE
HIGH 8.3 CVE-2026-13025

CVE-2026-13025_CVE-2026-13025

Race in DevTools in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the renderer process to potentially perform...

Google Chrome 149.0.7827.197 CVE
HIGH 7.6 CVE-2026-55583

Twenty: Cross-workspace IDOR in AgentTurnResolver_CVE-2026-55583

Twenty is an open-source CRM (customer relationship management) platform. Prior to 2.9.0, Twenty was vulnerable to a cross-workspace insecure direc...

twentyhq twenty < 2.9.0 CVE