Vulnerability index

Browse CVEs

20 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Link Following (Symlink)CWE-59 × clear
Chrome Devtools Mcp MEDIUM 6.1
CVE-2026-53765

Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From 0.20.0 until 1.1.0, The chrom…

Fix: 1.1.0+
Fix from $1,600 2026-06-24
Chrome Devtools Mcp MEDIUM 6.1
CVE-2026-53766

Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From 0.24.0 until 1.1.0, McpContex…

Fix: 1.1.0+
Fix from $1,600 2026-06-24
Android HIGH 8.4
CVE-2025-48582

In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an intent redirect. This could l…

Mitigation only
Fix from $1,950 2026-03-02
Web Designer HIGH 7.8
CVE-2025-1079

Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature

Fix: 16.2.0.0128+
Fix from $1,950 2025-05-12
Chrome HIGH 7.8
CVE-2019-13689

Inappropriate implementation in OS in Google Chrome on ChromeOS prior to 75.0.3770.80 allowed a remote attacker to perform arbitrary read/write via a…

Fix: 75.0.3770.80+
Fix from $1,950 2023-08-25
Chrome HIGH 7.8
CVE-2023-2939

Insufficient data validation in Installer in Google Chrome on Windows prior to 114.0.5735.90 allowed a local attacker to perform privilege escalation…

Fix: 114.0.5735.90+
Fix from $1,950 2023-05-30
Android MEDIUM 6.7
CVE-2022-21770

In sound driver, there is a possible information disclosure due to symlink following. This could lead to local information disclosure with System exe…

Mitigation only
Fix from $1,600 2022-07-06
Android MEDIUM 6.7
CVE-2022-20085

In netdiag, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege with Sys…

Mitigation only
Fix from $1,600 2022-05-03
Android MEDIUM 6.7
CVE-2022-20068

In mobile_log_d, there is a possible symbolic link following due to an improper link resolution. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,600 2022-04-11
Chrome HIGH 8.8
CVE-2022-0799

Insufficient policy enforcement in Installer in Google Chrome on Windows prior to 99.0.4844.51 allowed a remote attacker to perform local privilege e…

Fix: 99.0.4844.51+
Fix from $1,950 2022-04-05
Android MEDIUM 6.7
CVE-2022-20050

In connsyslogger, there is a possible symbolic link following due to improper link resolution. This could lead to local escalation of privilege with …

Mitigation only
Fix from $1,600 2022-03-10
Chrome HIGH 7.8
CVE-2021-37969

Inappropriate implementation in Google Updater in Google Chrome on Windows prior to 94.0.4606.54 allowed a remote attacker to perform local privilege…

Fix: 94.0.4606.54+
Fix from $1,950 2021-10-08
Chrome MEDIUM 6.5
CVE-2021-21131EPSS 8%

Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem restrictions…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome HIGH 8.1
CVE-2021-21125EPSS 8%

Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem r…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 7.8
CVE-2021-21117

Insufficient policy enforcement in Cryptohome in Google Chrome prior to 88.0.4324.96 allowed a local attacker to perform OS-level privilege escalatio…

Fix: 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 7.8
CVE-2020-16007

Insufficient data validation in installer in Google Chrome prior to 86.0.4240.183 allowed a local attacker to potentially elevate privilege via a cra…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 7.8
CVE-2020-6546

Inappropriate implementation in installer in Google Chrome prior to 84.0.4147.125 allowed a local attacker to potentially elevate privilege via a cra…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Android CRITICAL 9.1
CVE-2020-13833

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The system area allows arbitrary file overwrites via a s…

Mitigation only
Fix from $2,300 2020-06-04
Chrome HIGH 7.8
CVE-2020-6477

Inappropriate implementation in installer in Google Chrome on OS X prior to 83.0.4103.61 allowed a local attacker to perform privilege escalation via…

Fix: 83.0.4103.61+
Fix from $1,950 2020-05-21
Chrome Os HIGH 7.5
CVE-2013-0927

Google Chrome OS before 26.0.1410.57 relies on a Pango pango-utils.c read_config implementation that loads the contents of the .pangorc file in the u…

Fix: after 26.0.1410.56
Fix from $1,950 2013-04-10