Live-Feed 1682 aktiv ausgenutzt
Priorisierte Schwachstellen
Aktiv ausgenutzte und priorisierte CVEs, stündlich aktualisiert und nach NIS2/CRA-Relevanz gefiltert. Standardmässig die neuesten zuerst – umschaltbar nach Priorität (KEV, Severity, EPSS). Kostenlos & offen für alle.
36339
CVEs gesamt
1682
Aktiv ausgenutzt (KEV)
305
Ransomware-Bezug
6253
Kritisch
Zeige 1501 bis 1550 von 36339
- CVE-2026-17855 KritischScore 58 CVSS 9.6 EPSS 0.19%
Google Chrome: Race Condition in DevTools (macOS)
- CVE-2026-17856 KritischScore 58 CVSS 9.6 EPSS 0.24%
Google Chrome (macOS): Sandbox-Escape über Network-Komponente
- CVE-2026-17865 KritischScore 58 CVSS 9.6 EPSS 0.24%
Google Chrome: Sandbox-Ausbruch durch fehlerhafte Crypto-Implementierung auf macOS
- CVE-2026-17801 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome: Out-of-Bounds-Zugriff in ANGLE
- CVE-2026-17803 KritischScore 58 CVSS 9.6 EPSS 0.26%
Google Chrome: Unzureichende Validierung in Save to Drive ermöglicht Sandbox-Escape
- CVE-2026-17749 KritischScore 58 CVSS 9.6 EPSS 0.21%
Chromium: Rechteausweitung über bösartige Erweiterung (Google Chrome)
- CVE-2026-17758 KritischScore 58 CVSS 9.6 EPSS 0.30%
Google Chrome: Heap-Buffer-Overflow in Dawn ermöglicht Sandbox-Escape
- CVE-2026-17768 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome – Sandbox-Escape über unzureichende Validierung in WebSockets
- CVE-2026-17804 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome: Use-after-free in Media ermöglicht Sandbox-Escape
- CVE-2026-17676 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome (Android): Fehlerhafte Implementierung in ANGLE ermöglicht möglichen Sandbox-Escape
- CVE-2026-17680 KritischScore 58 CVSS 9.6 EPSS 0.42%
Google Chrome (ChromeOS) – Heap Buffer Overflow in Color-Komponente
- CVE-2026-17681 KritischScore 58 CVSS 9.6 EPSS 0.44%
Chromium: Unzureichende Eingabevalidierung in Web Authentication (Google Chrome, Android)
- CVE-2026-17682 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Integer-Overflow in ANGLE (Google Chrome)
- CVE-2026-17684 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome (iOS): Unzureichende Eingabevalidierung ermöglicht möglichen Sandbox-Escape
- CVE-2026-17687 KritischScore 58 CVSS 9.6 EPSS 0.42%
Google Chrome – Type Confusion in ANGLE ermöglicht Sandbox Escape
- CVE-2026-17688 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Use-after-free in Input ermöglicht Sandbox-Escape (Google Chrome)
- CVE-2026-17691 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Out-of-Bounds-Write in ANGLE (Google Chrome, Windows)
- CVE-2026-17692 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome (Windows): Use-after-free in DataTransfer ermöglicht möglichen Sandbox-Escape
- CVE-2026-17695 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome (Mac) – Sandbox Escape über fehlerhafte ANGLE-Implementierung
- CVE-2026-17697 KritischScore 58 CVSS 9.6 EPSS 0.42%
Chromium: Type Confusion in ANGLE ermöglicht Sandbox-Escape (Google Chrome)
- CVE-2026-17701 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Unzureichende Eingabevalidierung in ANGLE (Google Chrome)
- CVE-2026-17704 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome: Use-after-free in ANGLE ermöglicht möglichen Sandbox-Escape
- CVE-2026-17708 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome – Use-after-free in Audio-Komponente ermöglicht Sandbox Escape
- CVE-2026-17709 KritischScore 58 CVSS 9.6 EPSS 0.31%
Chromium: Race Condition in Downloads ermöglicht Sandbox-Escape (Google Chrome, Mac)
- CVE-2026-17710 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Fehlerhafte Implementierung in MHTML (Google Chrome)
- CVE-2026-17711 KritischScore 58 CVSS 9.6 EPSS 0.31%
Google Chrome (Mac): Race Condition in Downloads ermöglicht möglichen Sandbox-Escape
- CVE-2026-17713 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome für Android – Sandbox Escape über Accessibility-Komponente
- CVE-2026-17718 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome: Use-after-free in ANGLE ermöglicht möglicherweise Sandbox-Escape
- CVE-2026-17721 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome: Out-of-bounds-Write in ANGLE ermöglicht möglichen Sandbox-Escape
- CVE-2026-17726 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome (Android): Integer-Overflow in WebGL ermöglicht möglichen Sandbox-Escape
- CVE-2026-17727 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome (Android): Out-of-Bounds-Write in WebGL ermöglicht Sandbox-Escape
- CVE-2026-17738 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome – Unzureichende Validierung in Payments ermöglicht potenziellen Sandbox-Escape
- CVE-2026-17669 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome für iOS: Unsachgemässe Implementierung ermöglicht möglichen Sandbox-Escape
- CVE-2026-17670 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome: Use-after-free in Views ermöglicht Sandbox-Escape
- CVE-2026-17671 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome: Unzureichende Validierung in ANGLE ermöglicht Sandbox-Escape
- CVE-2026-17672 KritischScore 58 CVSS 9.6 EPSS 0.39%
Chromium: Unzureichende Eingabevalidierung in Chromecast (Google Chrome)
- CVE-2026-17673 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome: Integer-Overflow in QUIC ermöglicht möglichen Sandbox-Escape
- CVE-2026-17675 KritischScore 58 CVSS 9.6 EPSS 0.28%
Google Chrome: Out-of-Bounds-Write in ANGLE ermöglicht Sandbox-Escape
- CVE-2026-17717 KritischScore 58 CVSS 9.6 EPSS 0.39%
Google Chrome: Integer-Overflow in ANGLE ermöglicht Sandbox-Escape
- CVE-2026-17651 KritischScore 58 CVSS 9.6 EPSS 0.42%
Google Chrome (Android): Unzureichende Eingabevalidierung in Dawn ermöglicht Sandbox-Escape
- CVE-2026-17655 KritischScore 58 CVSS 9.6 EPSS 0.42%
Google Chrome: Unzureichende Eingabevalidierung in ANGLE ermöglicht Sandbox-Escape
- CVE-2026-17656 KritischScore 58 CVSS 9.6 EPSS 0.42%
Google Chrome: Use-after-free in Ozone ermöglicht Sandbox-Escape
- CVE-2026-44100 KritischScore 56 CVSS 9.4 EPSS 0.28%
CHARX JupiCore Service: Unauthentifizierte Rekonfiguration von Ladepunkten
- CVE-2026-47876 KritischScore 56 CVSS 9.3
VMware ESX: Out-of-Bounds-Write-Schwachstelle im VMXNET3-Netzwerkadapter
- CVE-2026-11707 KritischScore 56 CVSS 9.3 EPSS 0.22%
IBM Tivoli System Automation Application Manager / WebSphere: Cross-Site-Scripting in der Administrationskonsole
- CVE-2026-66418 KritischScore 56 CVSS 9.3 EPSS 0.34%
OpenClaw Dashboard v3.0.0: Gespeichertes Cross-Site Scripting
- CVE-2026-66421 KritischScore 56 CVSS 9.3 EPSS 0.36%
OpenClaw Dashboard: Gespeichertes Cross-Site-Scripting ermöglicht Codeausführung im Admin-Browser
- CVE-2026-44091 KritischScore 55 CVSS 9.1 EPSS 0.33%
SimpleHelp MQTT-Broker: Nicht authentifizierte Manipulation der Systemkonfiguration
- CVE-2026-44092 KritischScore 55 CVSS 9.1 EPSS 0.38%
SimpleHelp: Fehlende Eingabevalidierung im ModbusServer über MQTT
- CVE-2026-18363 KritischScore 55 CVSS 9.1
osTicket – Logikfehler bei der Validierung von Passwort-Reset-Tokens
Diesem Feed folgen, kostenlos
Per RSS sofort nutzbar: global, pro Kategorie oder pro Produkt. E-Mail und Webhook richten wir auf Anfrage ein. Stündlich aktualisiert, frei zugänglich für alle.