Vulnerability index

Browse CVEs

1,003 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2024-20083

In venc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $2,300 2024-08-14
Chrome CRITICAL 9.6
CVE-2023-4860

Inappropriate implementation in Skia in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who had compromised the renderer process to po…

Fix: 115.0.5790.98+
Fix from $2,300 2024-07-16
Chrome CRITICAL 9.6
CVE-2023-7012

Insufficient data validation in Permission Prompts in Google Chrome prior to 117.0.5938.62 allowed an attacker who convinced a user to install a mali…

Fix: 117.0.5938.62+
Fix from $2,300 2024-07-16
Chrome CRITICAL 9.6
CVE-2019-25154

Inappropriate implementation in iframe in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a…

Fix: 77.0.3865.75+
Fix from $2,300 2024-07-16
Chrome CRITICAL 9.6
CVE-2024-6779EPSS 6%

Out of bounds memory access in V8 in Google Chrome prior to 126.0.6478.182 allowed a remote attacker to potentially perform a sandbox escape via a cr…

Fix: 126.0.6478.182+
Fix from $2,300 2024-07-16
Android CRITICAL 9.8
CVE-2024-20078

In venc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privil…

Mitigation only
Fix from $2,300 2024-07-01
Android CRITICAL 9.8
CVE-2024-32911

There is a possible escalation of privilege due to improperly used crypto. This could lead to remote escalation of privilege with no additional execu…

No fix yet
Fix from $2,300 2024-06-13
Android CRITICAL 9.8
CVE-2024-32913

In wl_notify_rx_mgmt_frame of wl_cfg80211.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execu…

Mitigation only
Fix from $2,300 2024-06-13
Android CRITICAL 9.8
CVE-2024-32905

In circ_read of link_device_memory_legacy.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code…

Mitigation only
Fix from $2,300 2024-06-13
Android CRITICAL 9.8
CVE-2024-29786

In pktproc_fill_data_addr_without_bm of link_rx_pktproc.c, there is a possible out of bounds write due to a missing bounds check. This could lead to …

Mitigation only
Fix from $2,300 2024-06-13
Chrome CRITICAL 9.6
CVE-2024-5274 KEVEPSS 7%

Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML…

Fix: 125.0.6422.112+
Fix from $2,300 2024-05-28
Chrome CRITICAL 9.6
CVE-2024-4947 KEVEPSS 15%

Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 125.0.6422.60+
Fix from $2,300 2024-05-15
Chrome CRITICAL 9.6
CVE-2024-4671 KEVEPSS 8%

Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 124.0.6367.201+
Fix from $2,300 2024-05-14
Chrome CRITICAL 9.6
CVE-2024-4558

Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 14.6 / 17.6+
Fix from $2,300 2024-05-07
Protobuf CRITICAL 9.8
CVE-2024-2410

The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken …

Fix: 4.25.0+
Fix from $2,300 2024-05-03
Chrome CRITICAL 9.6
CVE-2024-3157

Out of bounds memory access in Compositing in Google Chrome prior to 123.0.6312.122 allowed a remote attacker who had compromised the GPU process to …

Fix: 123.0.6312.122+
Fix from $2,300 2024-04-10
Android CRITICAL 9.8
CVE-2024-29756

In afe_callback of q6afe.c, there is a possible out of bounds write due to a buffer overflow. This could lead to local escalation of privilege with n…

Mitigation only
Fix from $2,300 2024-04-05
Chromecast Firmware CRITICAL 10.0
CVE-2023-48426

u-boot bug that allows for u-boot shell and interrupt over UART

Mitigation only
Fix from $2,300 2024-04-05
Android CRITICAL 9.8
CVE-2024-27227

A malicious DNS response can trigger a number of OOB reads, writes, and other memory issues

Mitigation only
Fix from $2,300 2024-03-11
Android CRITICAL 9.8
CVE-2024-27228

there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileg…

Mitigation only
Fix from $2,300 2024-03-11
Android CRITICAL 9.1
CVE-2024-27207

Exported broadcast receivers allowing malicious apps to bypass broadcast protection.

No fix yet
Fix from $2,300 2024-03-11
Android CRITICAL 9.8
CVE-2024-0039

In attp_build_value_cmd of att_protocol.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code exe…

Patch available
Fix from $2,300 2024-03-11
Android CRITICAL 9.8
CVE-2024-0031

In attp_build_read_by_type_value_cmd of att_protocol.cc , there is a possible out of bounds write due to improper input validation. This could lead t…

Patch available
Fix from $2,300 2024-02-16
Chrome CRITICAL 9.8
CVE-2024-1283EPSS 19%

Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 121.0.6167.160+
Fix from $2,300 2024-02-07
Chrome CRITICAL 9.8
CVE-2024-1284

Use after free in Mojo in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 121.0.6167.160+
Fix from $2,300 2024-02-07
Android CRITICAL 9.8
CVE-2024-20011

In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote code execution with no additi…

Mitigation only
Fix from $2,300 2024-02-05
Nest Wifi Pro Firmware CRITICAL 9.8
CVE-2023-6339

Google Nest WiFi Pro root code-execution & user-data compromise

No fix yet
Fix from $2,300 2024-01-02
Nest Audio Firmware CRITICAL 9.8
CVE-2023-48419

An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege 

Fix: 2.58+
Fix from $2,300 2024-01-02
Chromecast Firmware CRITICAL 9.8
CVE-2023-48417

Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application

Fix: 2023-10-01+
Fix from $2,300 2023-12-11
Chromecast Firmware CRITICAL 9.8
CVE-2023-48424

U-Boot shell vulnerability resulting in Privilege escalation in a production device

Fix: 2023-10-01+
Fix from $2,300 2023-12-11