Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

36282 risultati

VulnerabilitàAlta
CVE-2026-8575 - Google Chrome Use After Free in UI

CVE ID :CVE-2026-8575 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8568 - Google Chrome AI Insufficient Policy Enforcement Remote Code Execution

CVE ID :CVE-2026-8568 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Insufficient policy enforcement in AI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to bypass Site Isolation via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8569 - Google Chrome Codecs Out-of-Bounds Write Sandbox Escape Vulnerability

CVE ID :CVE-2026-8569 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Out of bounds write in Codecs in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8570 - Google Chrome V8 Type Confusion Information Disclosure

CVE ID :CVE-2026-8570 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8571 - Google Chrome Android GPU Policy Enforcement Bypass

CVE ID :CVE-2026-8571 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Insufficient policy enforcement in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8572 - Google Chrome Android Cross-Origin Data Leakage

CVE ID :CVE-2026-8572 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Insufficient policy enforcement in Network in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8573 - Google Chrome Windows Integer Overflow Sandbox Escape

CVE ID :CVE-2026-8573 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8574 - Google Chrome Use-After-Free Vulnerability

CVE ID :CVE-2026-8574 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8576 - Google Chrome CORS Cross-Origin Data Leak

CVE ID :CVE-2026-8576 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
VulnerabilitàAlta
CVE-2026-8567 - Google Chrome ANGLE Integer Overflow Vulnerability

CVE ID :CVE-2026-8567 Published : May 14, 2026, 8:17 p.m. | 13 minutes ago Description :Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Medium) Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE14 mag 2026
News
Chinese APT Hackers Exploit Microsoft Exchange to Breach Energy Sector Network

Chinese APT Hackers Exploit Microsoft Exchange to Breach Energy Sector Network A Chinese state-linked hacking group known as FamousSparrow has quietly infiltrated an Azerbaijani oil and gas company, exploiting an unpatched Microsoft Exchange server to plant multiple backdoors in ... Read more Published Date: May 14, 2026 (15 hours, 48 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2022-41082 CVE-2022-41040

CVEfeed Newsroom14 mag 2026
VulnerabilitàAlta
CVE-2026-8621 (CVSS 8.8)

Crabbox prior to v0.12.0 contains an authentication bypass vulnerability that allows non-admin shared-token callers to impersonate other owners or organizations by spoofing identity headers. Attackers can inject malicious X-Crabbox-Owner and X-Crabbox-Org headers in requests authenticated with a shared token to bypass authorization checks and access owner/org-scoped lease operations belonging to victim accounts.

NVD (NIST)14 mag 2026

Pagina 1637 di 3024

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.