CVE-2026-35273 is a critical unauthenticated remote code execution vulnerability in Oracle PeopleSoft Enterprise PeopleTools. Rated CVSS 9.8, the flaw affects PeopleTools versions 8.61 and 8.62 and requires immediate mitigation.
Oracle is warning about a critical PeopleSoft Suite zero-day vulnerability tracked as CVE-2026-35273 that allows unauthenticated remote code execution, with the flaw actively exploited in ShinyHunter data theft attacks. [...]
A vulnerability classified as critical was found in Ivanti Sentry up to R10.5.1/R10.6.1/R10.7.0. This affects an unknown part. The manipulation results in os command injection.
This vulnerability was named CVE-2026-10520. The attack may be performed from remote. In addition, an exploit is available.
Upgrading the affected component is advised.
A vulnerability described as problematic has been identified in Google Chrome. This issue affects some unknown processing of the component Paint. Such manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is uniquely identified as CVE-2026-11133. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability, which was classified as problematic, was found in Google Chrome on Android. This affects an unknown function of the component WebAPKs. The manipulation results in clickjacking.
This vulnerability is identified as CVE-2026-11127. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability was found in Google Chrome on Android. It has been classified as critical. Affected by this vulnerability is an unknown functionality of the component Autofill. Performing a manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-11131. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability identified as problematic has been detected in Google Chrome. This issue affects some unknown processing of the component Paint. This manipulation causes permissive cross-domain policy with untrusted domains.
This vulnerability appears as CVE-2026-11132. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
A vulnerability was found in Google Chrome. It has been declared as critical. This issue affects some unknown processing of the component ANGLE. The manipulation results in use of uninitialized variable.
This vulnerability is cataloged as CVE-2026-11123. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Google Chrome. It has been rated as critical. Impacted is an unknown function of the component Skia. This manipulation causes heap-based buffer overflow.
This vulnerability is registered as CVE-2026-11124. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability identified as problematic has been detected in Google Chrome. The impacted element is an unknown function of the component Web Share. Performing a manipulation results in permissive cross-domain policy with untrusted domains.
This vulnerability is reported as CVE-2026-11128. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability marked as problematic has been reported in Google Chrome. This impacts an unknown function of the component Extensions. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is traded as CVE-2026-11129. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability described as problematic has been identified in Google Chrome. Affected is an unknown function of the component Keyboard. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2026-11122. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in Google Chrome. Affected by this vulnerability is an unknown functionality of the component DevTools. This manipulation causes permissive cross-domain policy with untrusted domains.
This vulnerability is handled as CVE-2026-11126. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.