Vulnerability index

Browse CVEs

90 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2023-35674 KEV

In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the code. This could lead to local e…

Patch available
Fix from $1,950 2023-09-11
Chrome HIGH 8.8
CVE-2023-4762 KEVEPSS 40%

Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium …

Fix: 116.0.1938.76 / 116.0.5845.179+
Fix from $1,950 2023-09-05
Android MEDIUM 5.5
CVE-2023-21237 KEV

In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insuffic…

Mitigation only
Fix from $1,600 2023-06-28
Chrome HIGH 8.8
CVE-2023-3079 KEVEPSS 32%

Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 7.1.5 / 114.0.5735.110+
Fix from $1,950 2023-06-05
Chrome CRITICAL 9.6
CVE-2023-2136 KEVEPSS 6%

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 112.0.5615.137+
Fix from $2,300 2023-04-19
Chrome HIGH 8.8
CVE-2023-2033 KEVEPSS 41%

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 7.1.5 / 112.0.5615.121+
Fix from $1,950 2023-04-14
Android HIGH 7.8
CVE-2023-20963 KEV

In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. …

Patch available
Fix from $1,950 2023-03-24
Chrome HIGH 8.8
CVE-2022-4262 KEVEPSS 15%

Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 108.0.5359.94+
Fix from $1,950 2022-12-02
Chrome CRITICAL 9.6
CVE-2022-4135 KEVEPSS 32%

Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 107.0.1418.62 / 107.0.5304.121+
Fix from $2,300 2022-11-25
Chrome HIGH 8.8
CVE-2022-3723 KEVEPSS 8%

Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 107.0.5304.87+
Fix from $1,950 2022-11-01
Chrome CRITICAL 9.6
CVE-2022-3075 KEVEPSS 6%

Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to p…

Fix: 105.0.5195.102+
Fix from $2,300 2022-09-26
Chrome HIGH 8.8
CVE-2022-3038 KEVEPSS 25%

Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 105.0.5195.52+
Fix from $1,950 2022-09-26
Chrome MEDIUM 6.5
CVE-2022-2856 KEV

Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily br…

Fix: 104.0.5112.101 / 104.0.5112.102+
Fix from $1,600 2022-09-26
Chrome HIGH 8.8
CVE-2022-2294 KEVEPSS 70%

Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 2.36.5 / 10.15.7+
Fix from $1,950 2022-07-28
Chrome HIGH 8.8
CVE-2022-1364 KEVEPSS 14%

Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 100.0.4896.127+
Fix from $1,950 2022-07-26
Chrome HIGH 8.8
CVE-2022-1096 KEVEPSS 24%

Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 99.0.4844.84+
Fix from $1,950 2022-07-23
Chrome HIGH 8.8
CVE-2022-0609 KEVEPSS 21%

Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Android HIGH 7.8
CVE-2021-39793 KEV

In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. This could lead to loca…

Mitigation only
Fix from $1,950 2022-03-16
Chrome HIGH 8.8
CVE-2021-4102 KEVEPSS 8%

Use after free in V8 in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.110+
Fix from $1,950 2022-02-11
Android HIGH 7.8
CVE-2022-22265 KEV

An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code executio…

Mitigation only
Fix from $1,950 2022-01-10
Android HIGH 7.8
CVE-2021-1048 KEV

In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2021-12-15
Chrome HIGH 8.8
CVE-2021-38003 KEVEPSS 39%

Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 95.0.4638.69+
Fix from $1,950 2021-11-23
Chrome MEDIUM 6.1
CVE-2021-38000 KEV

Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily brow…

Fix: 95.0.4638.69+
Fix from $1,600 2021-11-23
Chrome CRITICAL 9.6
CVE-2021-37973 KEVEPSS 12%

Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially pe…

Fix: 94.0.4606.61+
Fix from $2,300 2021-10-08
Chrome HIGH 8.8
CVE-2021-37975 KEVEPSS 35%

Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 94.0.4606.71+
Fix from $1,950 2021-10-08
Chrome MEDIUM 6.5
CVE-2021-37976 KEVEPSS 20%

Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information f…

Fix: 94.0.4606.71+
Fix from $1,600 2021-10-08
Chrome CRITICAL 9.6
CVE-2021-30633 KEVEPSS 33%

Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 93.0.4577.82+
Fix from $2,300 2021-10-08
Chrome HIGH 8.8
CVE-2021-30632 KEVEPSS 65%

Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 93.0.4577.82+
Fix from $1,950 2021-10-08
Chrome HIGH 8.8
CVE-2021-30563 KEVEPSS 9%

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 91.0.4472.164+
Fix from $1,950 2021-08-03
Chrome HIGH 8.8
CVE-2021-30554 KEVEPSS 7%

Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 91.0.4472.114+
Fix from $1,950 2021-07-02