Vulnerability index

Browse CVEs

224 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
HIGH 8.8 CVE-2022-1134 Type confusion in V8 in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 100.0.4896.60+ Fix from $1,9502022-07-23 MEDIUM 5.5 CVE-2022-29209 TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the macros that TensorFlow uses for wri… Tensorflow 2.6.4 / 2.7.2+ Fix from $1,6002022-05-21 HIGH 8.8 CVE-2022-0457 Type confusion in V8 in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 98.0.4758.80+ Fix from $1,9502022-04-05 HIGH 8.8 CVE-2022-0795 Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 99.0.4844.51+ Fix from $1,9502022-04-05 CRITICAL 9.1 CVE-2021-46743 In Firebase PHP-JWT before 6.0.0, an algorithm-confusion issue (e.g., RS256 / HS256) exists via the kid (aka Key ID) header, when multiple types of k… Firebase Php Jwt 6.0.0+ Fix from $2,3002022-03-29 HIGH 8.8 CVE-2022-0102 Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 97.0.4692.71+ Fix from $1,9502022-02-12 MEDIUM 6.5 CVE-2022-23583 Tensorflow is an Open Source Machine Learning Framework. A malicious user can cause a denial of service by altering a `SavedModel` such that any bina… Tensorflow after 2.6.2 Fix from $1,6002022-02-04 MEDIUM 6.5 CVE-2022-21734 Tensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail if the key tensor is not a sca… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21731 Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be used to trigger a denial of serv… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 HIGH 8.8 CVE-2021-4078 Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 96.0.4664.93+ Fix from $1,9502021-12-23 HIGH 8.8 CVE-2021-38012 Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 96.0.4664.45+ Fix from $1,9502021-12-23 HIGH 8.8 CVE-2021-4056 Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p… Chrome 96.0.4664.93+ Fix from $1,9502021-12-23 HIGH 8.8 CVE-2021-4061 Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 96.0.4664.93+ Fix from $1,9502021-12-23 HIGH 8.8 CVE-2021-38007 Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 96.0.4664.45+ Fix from $1,9502021-12-23 HIGH 8.8 CVE-2021-38001EPSS 27% Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 95.0.4638.69+ Fix from $1,9502021-11-23 HIGH 8.8 CVE-2018-6122 Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 66.0.3359.139+ Fix from $1,9502021-11-02 HIGH 8.8 CVE-2021-30627 Type confusion in Blink layout in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 93.0.4577.82+ Fix from $1,9502021-10-08 HIGH 8.8 CVE-2021-30598EPSS 7% Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 92.0.4515.159+ Fix from $1,9502021-08-26 HIGH 8.8 CVE-2021-30599EPSS 5% Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 92.0.4515.159+ Fix from $1,9502021-08-26 HIGH 8.8 CVE-2021-30588 Type confusion in V8 in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 92.0.4515.107+ Fix from $1,9502021-08-03 HIGH 8.8 CVE-2021-30561 Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 91.0.4472.164+ Fix from $1,9502021-08-03 HIGH 8.8 CVE-2021-30563 KEVEPSS 9% Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 91.0.4472.164+ Fix from $1,9502021-08-03 HIGH 8.8 CVE-2021-30551 KEVEPSS 65% Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 91.0.4472.101+ Fix from $1,9502021-06-15 HIGH 8.8 CVE-2021-30517 Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 90.0.4430.212+ Fix from $1,9502021-06-04 HIGH 8.8 CVE-2021-30513 Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 90.0.4430.212+ Fix from $1,9502021-06-04 HIGH 7.8 CVE-2021-29513 TensorFlow is an end-to-end open source platform for machine learning. Calling TF operations with tensors of non-numeric types when the operations ex… Tensorflow 2.1.4 / 2.2.3+ Fix from $1,9502021-05-14 MEDIUM 5.5 CVE-2021-29519 TensorFlow is an end-to-end open source platform for machine learning. The API of `tf.raw_ops.SparseCross` allows combinations which would result in … Tensorflow 2.1.4 / 2.2.3+ Fix from $1,6002021-05-14 HIGH 8.8 CVE-2021-21230 Type confusion in V8 in Google Chrome prior to 90.0.4430.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 90.0.4430.93+ Fix from $1,9502021-04-30 HIGH 8.8 CVE-2021-21224 KEVEPSS 56% Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML p… Chrome 90.0.4430.85+ Fix from $1,9502021-04-26 HIGH 8.8 CVE-2020-16015 Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 87.0.4280.66+ Fix from $1,9502021-01-08