Monday , September 28 2026
Chrome

ALERT
Chrome update fixes 26 vulnerabilities enabling remote code execution

Google has launched a major security update for its Chrome browser. This update fixes 26 unique vulnerabilities that might let attackers run harmful code from a distance. The new Stable channel update brings versions 146.0.7680.153 and 146.0.7680.154 for Windows and macOS. Linux users will get version 146.0.7680.153.

This important update is meant to fix several serious memory problems that can harm both individual users and large networks. This report follows standard cybersecurity formats. It shows the biggest threats we dealt with in this release.

Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

Microsoft has fixed a serious security flaw in Azure AI Foundry that could let bad actors gain privilege escalation. The...
Read More
Microsoft Patches CVSS 10.0 Azure AI Foundry Vulnerability Allowing Privilege Escalation

AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

Amazon Web Services cannot restore access to its cloud-computing facility in Bahrain and ‌one of three data-hosting zones in the...
Read More
AWS is unable to restore access to Bahrain, one UAE cloud data zone after war damage

Cisco Warns of Critical ISE 0-Day Flaw and Hackers Allegedly Selling Fortinet FortiGate 1-Day Flaw

A threat actor is allegedly offering a private remote code execution exploit for Fortinet FortiGate SSL VPN appliances, claiming that...
Read More
Cisco Warns of Critical ISE 0-Day Flaw and Hackers Allegedly Selling Fortinet FortiGate 1-Day Flaw

Anthropic prepares “Claude Money” to analyze bank account and financial data

Anthropic is making a new Claude feature called “Money.” It's a separate tab in the mobile app. The new interface...
Read More
Anthropic prepares “Claude Money” to analyze bank account and financial data

GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

GhostCode is a new phishing kit that changes a regular Microsoft 365 sign-in into an account theft. It doesn't need...
Read More
GhostCode Phishing Kit Evades Microsoft 365 MFA to Hijack Accounts in 78 Seconds

CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

CISA has added a serious Cisco Secure Email Gateway flaw to its list of known exploits. They warn that attackers...
Read More
CISA Warns of Cisco Secure Email Gateway 0-Day Flaw Actively Exploited in Attacks

VPN flaw exposed 246,000 personnel records in japan

Japan’s Digital Agency found a data leak that may have exposed about 246,000 records with personal information of government workers....
Read More
VPN flaw exposed 246,000 personnel records in japan

Hackers deploy Casbaneiro Trojan that activates on bank websites

Casbaneiro is going after online banking users by sending fake messages that seem like urgent bills or legal papers. The...
Read More
Hackers deploy Casbaneiro Trojan that activates on bank websites

German police read Signal, Telegram, WhatsApp messages without breaking encryption

German law enforcement agencies are using features built into apps such as WhatsApp to monitor people’s messages without breaking their...
Read More
German police read Signal, Telegram, WhatsApp messages without breaking encryption

Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft

GitLab has released an important security update to fix two serious problems. These issues could allow unauthorized file access and...
Read More
Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft
CVE Identifier Severity Browser Component Vulnerability Type
CVE-2026-4439 Critical WebGL Out of bounds memory access
CVE-2026-4440 Critical WebGL Out of bounds read and write
CVE-2026-4441 Critical Base Use after free
CVE-2026-4442 High CSS Heap buffer overflow
CVE-2026-4443 High WebAudio Heap buffer overflow
CVE-2026-4444 High WebRTC Stack buffer overflow
CVE-2026-4445 High WebRTC Use after free
CVE-2026-4446 High WebRTC Use after free
CVE-2026-4447 High V8 Inappropriate implementation
CVE-2026-4448 High ANGLE Heap buffer overflow
CVE-2026-4449 High Blink Use after free
CVE-2026-4450 High V8 Out of bounds write
CVE-2026-4451 High Navigation Insufficient validation of untrusted input
CVE-2026-4452 High ANGLE Integer overflow
CVE-2026-4453 High Dawn Integer overflow
CVE-2026-4454 High Network Use after free
CVE-2026-4455 High PDFium Heap buffer overflow
CVE-2026-4456 High Digital Credentials API Use after free
CVE-2026-4457 High V8 Type Confusion
CVE-2026-4458 High Extensions Use after free
CVE-2026-4459 High WebAudio Out of bounds read and write
CVE-2026-4460 High Skia Out of bounds read
CVE-2026-4461 High V8 Inappropriate implementation
CVE-2026-4462 High Blink Out of bounds read
CVE-2026-4463 High WebRTC Heap buffer overflow
CVE-2026-4464 Medium ANGLE Integer overflow

To lower the chance of a system breach, users should check their browser versions right away.

Check Also

Chrome

Google issues warning of new Chrome zero-day flaw exploited

Google has updated the Chrome browser to fix a serious security issue in the V8 …