CVE-2026-81646
Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.
CVSS
5.9
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 9, 2026 · Last modified: Sep 9, 2026 · CWE-125
Not enough EPSS history yet.
Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.
- consumer.huawei.comhttps://consumer.huawei.com/en/support/bulletin/2026/9/
- consumer.huawei.comhttps://consumer.huawei.com/en/support/bulletinlaptops/2026/9/
- consumer.huawei.comhttps://consumer.huawei.com/en/support/bulletinvision/2026/9/
- consumer.huawei.comhttps://consumer.huawei.com/en/support/bulletinwearables/2026/9/
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-877364.3 MED—
———An issue was discovered in the mirage-crypto-ec package before 2.3.0 for OCaml. There is an EC public key out-of-bounds read for compressed points.3hCVE-2026-493147.3 HIG—
———OOB write vulnerability in the rendering and composition module.
Impact: Successful exploitation of this vulnerability may affect availability.4hCVE-2026-87650——
———Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)7hCVE-2026-87640——
———Out of bounds read in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)7hCVE-2026-87604——
———Out of bounds read in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)7hCVE-2026-87602——
———Out of bounds read in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Low)7h