Vulnerability index

Browse CVEs

224 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Chrome HIGH 8.8
CVE-2022-1134

Type confusion in V8 in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 100.0.4896.60+
Fix from $1,950 2022-07-23
Tensorflow MEDIUM 5.5
CVE-2022-29209

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the macros that TensorFlow uses for wri…

Fix: 2.6.4 / 2.7.2+
Fix from $1,600 2022-05-21
Chrome HIGH 8.8
CVE-2022-0457

Type confusion in V8 in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 98.0.4758.80+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0795

Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 99.0.4844.51+
Fix from $1,950 2022-04-05
Firebase Php Jwt CRITICAL 9.1
CVE-2021-46743

In Firebase PHP-JWT before 6.0.0, an algorithm-confusion issue (e.g., RS256 / HS256) exists via the kid (aka Key ID) header, when multiple types of k…

Fix: 6.0.0+
Fix from $2,300 2022-03-29
Chrome HIGH 8.8
CVE-2022-0102

Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 97.0.4692.71+
Fix from $1,950 2022-02-12
Tensorflow MEDIUM 6.5
CVE-2022-23583

Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `SavedModel` such that any bina…

Fix: after 2.6.2
Fix from $1,600 2022-02-04
Tensorflow MEDIUM 6.5
CVE-2022-21734

Tensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail if the key tensor is not a sca…

Fix: after 2.6.2
Fix from $1,600 2022-02-03
Tensorflow MEDIUM 6.5
CVE-2022-21731

Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be used to trigger a denial of serv…

Fix: after 2.6.2
Fix from $1,600 2022-02-03
Chrome HIGH 8.8
CVE-2021-4078

Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-38012

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.45+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-4056

Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-4061

Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-38007

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.45+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-38001EPSS 27%

Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 95.0.4638.69+
Fix from $1,950 2021-11-23
Chrome HIGH 8.8
CVE-2018-6122

Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 66.0.3359.139+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-30627

Type confusion in Blink layout in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 93.0.4577.82+
Fix from $1,950 2021-10-08
Chrome HIGH 8.8
CVE-2021-30598EPSS 7%

Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 92.0.4515.159+
Fix from $1,950 2021-08-26
Chrome HIGH 8.8
CVE-2021-30599EPSS 5%

Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML …

Fix: 92.0.4515.159+
Fix from $1,950 2021-08-26
Chrome HIGH 8.8
CVE-2021-30588

Type confusion in V8 in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 92.0.4515.107+
Fix from $1,950 2021-08-03
Chrome HIGH 8.8
CVE-2021-30561

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 91.0.4472.164+
Fix from $1,950 2021-08-03
Chrome HIGH 8.8
CVE-2021-30563 KEVEPSS 9%

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 91.0.4472.164+
Fix from $1,950 2021-08-03
Chrome HIGH 8.8
CVE-2021-30551 KEVEPSS 65%

Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 91.0.4472.101+
Fix from $1,950 2021-06-15
Chrome HIGH 8.8
CVE-2021-30517

Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30513

Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Tensorflow HIGH 7.8
CVE-2021-29513

TensorFlow is an end-to-end open source platform for machine learning. Calling TF operations with tensors of non-numeric types when the operations ex…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29519

TensorFlow is an end-to-end open source platform for machine learning. The API of `tf.raw_ops.SparseCross` allows combinations which would result in …

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Chrome HIGH 8.8
CVE-2021-21230

Type confusion in V8 in Google Chrome prior to 90.0.4430.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 90.0.4430.93+
Fix from $1,950 2021-04-30
Chrome HIGH 8.8
CVE-2021-21224 KEVEPSS 56%

Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML p…

Fix: 90.0.4430.85+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2020-16015

Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08