Google Chrome Update Disrupts Infostealer Cookie Theft
Google adds Device Bound Session Credentials (DBSC) to Chrome 146, using hardware keys to block infostealer use of stolen session cookies on Windows.
Related Vulnerabilities
- CVE-2026-5477: An integer overflow existed in the wolfCrypt CMAC implementation, that could be exploited to forge C HIGH
- CVE-2026-36236: SourceCodester Engineers Online Portal v1.0 is vulnerable to SQL Injection in update_password.php vi CRITICAL
- CVE-2026-6033: A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected is an unknown function of MEDIUM
- CVE-2026-3371: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Insecure MEDIUM
- CVE-2026-4351: The Perfmatters plugin for WordPress is vulnerable to arbitrary file overwrite via path traversal in HIGH
Related Coverage
Threat Actors