CVE-2026-4786 Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open()
CVE-2026-6100 Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor, and gzip.GzipFile after re-use under memory pressure
CVE-2026-5160
Information published. Continue reading CVE-2026-5160
Chromium: CVE-2026-6307 Type Confusion in Turbofan
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Continue reading Chromium: CVE-2026-6307 Type Confusion in Turbofan
Chromium: CVE-2026-6306 Heap buffer overflow in PDFium
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Continue reading Chromium: CVE-2026-6306 Heap buffer overflow in PDFium
Chromium: CVE-2026-6305 Heap buffer overflow in PDFium
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Continue reading Chromium: CVE-2026-6305 Heap buffer overflow in PDFium
Chromium: CVE-2026-6304 Use after free in Graphite
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. Continue reading Chromium: CVE-2026-6304 Use after free in Graphite
