在 Google Chrome(Windows 平台,版本低于 154.0.8037.97)中,FileSystem 存在不正确的授权问题,允许远程攻击者通过利用社会工程学手段,借助精心构造的 HTML 页面,在沙箱外执行任意代码。(Chromium 安全严重程度:高)
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103627 | Google Chrome <154.0.8037.97 SVG信息泄露漏洞 | |
| CVE-2026-103622 | Chrome <154.0.8037.97 SVG Use-After-Free远程代码执行 | |
| CVE-2026-103631 | Chrome <154.0.8037.97 WebRTC堆溢出漏洞 | |
| CVE-2026-103629 | Chrome <154.0.8037.97 Skia整型溢出致跨域数据泄露 | |
| CVE-2026-103623 | Chrome 154.0.8037.97前 MediaStream 释放后使用漏洞 | |
| CVE-2026-103630 | Google Chrome 154.0.8037.97前存在使用后释放漏洞 | |
| CVE-2026-103625 | Chrome<154.0.8037.97 V8类型混淆致远程代码执行 | |
| CVE-2026-103624 | Chrome Windows <154.0.8037.97 Use-After-Free漏洞 | |
| CVE-2026-103621 | Chrome<154.0.8037.97组合整数溢出致数据泄露 | |
| CVE-2026-103628 | Chrome<154.0.8037.97 WebGL越界写入漏洞 |
No comments yet