在 Google Chrome 154.0.8037.97 之前的 Windows 版本中,上下文任务(Contextual Tasks)存在一个使用释放后内存(use-after-free)漏洞。攻击者若已 compromising(攻陷)渲染器进程,可通过构造的 HTML 页面,在沙箱外潜在地执行任意代码。(Chromium 安全严重级别:高危)
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103627 | Google Chrome <154.0.8037.97 SVG信息泄露漏洞 | |
| CVE-2026-103622 | Chrome <154.0.8037.97 SVG Use-After-Free远程代码执行 | |
| CVE-2026-103631 | Chrome <154.0.8037.97 WebRTC堆溢出漏洞 | |
| CVE-2026-103629 | Chrome <154.0.8037.97 Skia整型溢出致跨域数据泄露 | |
| CVE-2026-103623 | Chrome 154.0.8037.97前 MediaStream 释放后使用漏洞 | |
| CVE-2026-103630 | Google Chrome 154.0.8037.97前存在使用后释放漏洞 | |
| CVE-2026-103625 | Chrome<154.0.8037.97 V8类型混淆致远程代码执行 | |
| CVE-2026-103621 | Chrome<154.0.8037.97组合整数溢出致数据泄露 | |
| CVE-2026-103626 | Chrome <154.0.8037.97 文件系统权限验证漏洞 | |
| CVE-2026-103628 | Chrome<154.0.8037.97 WebGL越界写入漏洞 |
No comments yet