<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Browser — PoC Archive</title><link>https://poc.intelseclab.com/tags/browser/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 16 Aug 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/browser/index.xml" rel="self" type="application/rss+xml"/><item><title>Firefox SpiderMonkey JIT Miscompilation and Use-After-Free (CVE-2026-2764)</title><link>https://poc.intelseclab.com/pocs/binary/2026-08-16_cve-2026-2764-firefox-jit-uaf/</link><pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/binary/2026-08-16_cve-2026-2764-firefox-jit-uaf/</guid><description>High severity (CVSS 8.8) — binary · CVE-2026-2764 / MFSA 2026-13. Status: Patched. Affects: Mozilla Firefox (SpiderMonkey JavaScript Engine). Tags: firefox, spidermonkey, jit, uaf, type-confusion, wasm, browser, ionmonkey, baseline, proxy, CVE-2026-2764.</description><category>binary</category><category>High</category><category>firefox</category><category>spidermonkey</category><category>jit</category><category>uaf</category><category>type-confusion</category><category>wasm</category><category>browser</category><category>ionmonkey</category><category>baseline</category><category>proxy</category><category>CVE-2026-2764</category></item><item><title>WebKit Navigation API Cross-Port canIntercept Bypass (CVE-2026-20643)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-20643-webkit-navigation-api-cross-port/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-20643-webkit-navigation-api-cross-port/</guid><description>Medium severity — web · CVE-2026-20643. Status: PoC. Affects: WebKit (Safari / WebKit-based browsers), Navigation API implementation. Tags: webkit, browser, navigation-api, same-origin-policy, cross-port, javascript, test-page, canintercept.</description><category>web</category><category>Medium</category><category>webkit</category><category>browser</category><category>navigation-api</category><category>same-origin-policy</category><category>cross-port</category><category>javascript</category><category>test-page</category><category>canintercept</category></item><item><title>Lightspeed Classroom Management Weak Authentication / Device Takeover — CVE-2026-30368</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30368-lightspeed-classroom-auth-bypass/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30368-lightspeed-classroom-auth-bypass/</guid><description>High severity — web · CVE-2026-30368. Status: PoC. Affects: Lightspeed Classroom Management (Chrome extension for school device management). Tags: chrome-extension, wasm, jwt, ably, service-worker, education-technology, device-control, browser.</description><category>web</category><category>High</category><category>chrome-extension</category><category>wasm</category><category>jwt</category><category>ably</category><category>service-worker</category><category>education-technology</category><category>device-control</category><category>browser</category></item><item><title>Ladybird Browser WebAssembly ESM Host-Function Use-After-Free RCE</title><link>https://poc.intelseclab.com/pocs/web/2026-07-03_ladybird-wasm-esm-host-function-rce/</link><pubDate>Fri, 03 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-03_ladybird-wasm-esm-host-function-rce/</guid><description>Critical severity — web · None assigned as of 2026-07-03. Status: Weaponized. Affects: Ladybird web browser (WebContent process, LibWeb / LibWasm). Tags: ladybird, browser, webassembly, wasm-gc, use-after-free, memory-corruption, rce, javascript-engine, sandbox-escape.</description><category>web</category><category>Critical</category><category>ladybird</category><category>browser</category><category>webassembly</category><category>wasm-gc</category><category>use-after-free</category><category>memory-corruption</category><category>rce</category><category>javascript-engine</category><category>sandbox-escape</category></item><item><title>Firefox Smart Window Private URL Exfiltration</title><link>https://poc.intelseclab.com/pocs/web/2026-07-03_firefox-smartwindow-private-url-exfil/</link><pubDate>Fri, 03 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-03_firefox-smartwindow-private-url-exfil/</guid><description>High severity — web · None assigned as of 2026-07-03. Status: PoC. Affects: Firefox Smart Window (AI browsing assistant feature). Tags: firefox, smart-window, ai-assistant, privacy-leak, information-disclosure, url-token-exfiltration, browser, prompt-injection.</description><category>web</category><category>High</category><category>firefox</category><category>smart-window</category><category>ai-assistant</category><category>privacy-leak</category><category>information-disclosure</category><category>url-token-exfiltration</category><category>browser</category><category>prompt-injection</category></item><item><title>Google Chromium V8 Out-of-Bounds Read/Write — Crash PoC (CVE-2026-11645)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-01_cve-2026-11645-chrome-v8-oob-crash/</link><pubDate>Wed, 01 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-01_cve-2026-11645-chrome-v8-oob-crash/</guid><description>High severity (CVSS 8.8) — web · CVE-2026-11645. Status: Incomplete PoC (crash only — no confirmed public RCE chain). Affects: Google Chrome / Chromium — V8 JavaScript and WebAssembly engine. Tags: browser, chrome, v8, javascript, turbofan, out-of-bounds, memory-corruption, zero-day, incomplete-poc, active-exploitation.</description><category>web</category><category>High</category><category>browser</category><category>chrome</category><category>v8</category><category>javascript</category><category>turbofan</category><category>out-of-bounds</category><category>memory-corruption</category><category>zero-day</category><category>incomplete-poc</category><category>active-exploitation</category></item><item><title>Chrome WebGPU Use-After-Free (CVE-2026-5281)</title><link>https://poc.intelseclab.com/pocs/web/2026-05-18_chrome-webgpu-use-after-free/</link><pubDate>Mon, 18 May 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-05-18_chrome-webgpu-use-after-free/</guid><description>High severity (CVSS 8.8) — web · CVE-2026-5281. Status: Weaponized. Affects: Google Chrome / Chromium WebGPU (Dawn backend). Tags: use-after-free, WebGPU, Chrome, Dawn, GPU, browser, unauthenticated.</description><category>web</category><category>High</category><category>use-after-free</category><category>WebGPU</category><category>Chrome</category><category>Dawn</category><category>GPU</category><category>browser</category><category>unauthenticated</category></item></channel></rss>