Known vulnerabilities in Chrome OS - page 21

Vendor: Google
Software: Chrome OS
Software CPE: cpe:2.3:o:google:chromeos:*:*:*:*:*:*:*:*
Total vulnerabilities: 924
Public exploits: 35
Known exploited (KEV): 35
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Chrome OS Chrome OS is affected by 924 known vulnerabilities: 30 critical, 537 high, 160 medium, 197 low Critical High Medium Low

Vulnerabilities (924)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123061 - Integer overflow
CVE-2026-2649
CWE-190 High
No
No
138.0.7204.305, 145.0.7632.154 19.02.2026 SB2026021909
SB2026022053
SB2026022105
and 12 more
#VU123062 - Heap-based Buffer Overflow
CVE-2026-2650
CWE-122 Medium
No
No
145.0.7632.154 19.02.2026 SB2026021909
SB2026022053
SB2026022105
and 11 more
#VU123060 - Heap-based Buffer Overflow
CVE-2026-2648
CWE-122 High
No
No
145.0.7632.154 19.02.2026 SB2026021909
SB2026022053
SB2026022105
and 11 more
#VU122771 - Improperly Implemented Security Check for Standard
CVE-2026-2323
CWE-358 Low
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021806
and 11 more
#VU122769 - Use After Free
CVE-2026-2321
CWE-416 Medium
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021855
and 10 more
#VU122770 - Improperly Implemented Security Check for Standard
CVE-2026-2322
CWE-358 Low
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021855
and 11 more
#VU122767 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2026-2319
CWE-362 High
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021855
and 11 more
#VU122768 - Improperly Implemented Security Check for Standard
CVE-2026-2320
CWE-358 High
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021806
and 10 more
#VU122766 - Improperly Implemented Security Check for Standard
CVE-2026-2318
CWE-358 High
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021806
and 11 more
#VU122764 - Permissions, Privileges, and Access Controls
CVE-2026-2316
CWE-264 Medium
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021855
and 10 more
#VU122765 - Improperly Implemented Security Check for Standard
CVE-2026-2317
CWE-358 High
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021806
and 11 more
#VU122761 - Use After Free
CVE-2026-2313
CWE-416 High
No
No
145.0.7632.154 12.02.2026 SB2026021244
SB2026021501
SB2026021806
and 10 more
#VU121339 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2026-0904
CWE-451 Medium
No
No
138.0.7204.305 13.01.2026 SB20260113133
SB2026011515
SB20260116127
and 4 more
#VU121005 - Permissions, Privileges, and Access Controls
CVE-2026-0628
CWE-264 High
No
No
138.0.7204.301 06.01.2026 SB2026010658
SB2026010977
SB2026011001
and 2 more
#VU119046 - Improperly Implemented Security Check for Standard
CVE-2025-13632
CWE-358 Medium
No
No
138.0.7204.300 02.12.2025 SB2025120235
SB2025120504
SB2025120607
and 2 more
#VU119049 - Improper Validation of Generative AI Output
CVE-2025-13720
CWE-1426 Medium
No
No
138.0.7204.300 02.12.2025 SB2025120235
SB2025120504
SB2025120607
and 2 more
#VU117828 - Out-of-bounds read
CVE-2025-12443
CWE-125 Medium
No
No
138.0.7204.300, 142.0.7444.147 28.10.2025 SB2025103026
SB2025103101
SB2025110102
and 11 more
#VU113635 - Use After Free
CVE-2025-0932
CWE-416 Low
No
No
139.0.7258.137, 140.0.7339.201, 145.0.7632.154 05.08.2025 SB2025080518
SB2025080520
SB2025082021
and 2 more
#VU113102 - Use After Free
CVE-2025-38349
CWE-416 Low
No
No
138.0.7204.300, 140.0.7339.201, 145.0.7632.154 22.07.2025 SB2025072211
SB2025081508
SB20250818103
and 38 more
#VU104139 - Memory corruption
CVE-2025-21704
CWE-119 Low
No
No
145.0.7632.154 22.02.2025 SB2025022217
SB20250228103
SB20250228104
and 56 more


Showing elements 401 - 420 out of 924