Vulnerability index

Browse CVEs

90 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2021-30551 KEVEPSS 65%

Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 91.0.4472.101+
Fix from $1,950 2021-06-15
Chrome MEDIUM 6.5
CVE-2021-30533 KEVEPSS 17%

Insufficient policy enforcement in PopupBlocker in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass navigation restrictions vi…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome HIGH 8.8
CVE-2021-21206 KEVEPSS 9%

Use after free in Blink in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 89.0.4389.128+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21220 KEVEPSS 69%

Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corrup…

Fix: 89.0.4389.128+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21224 KEVEPSS 56%

Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML p…

Fix: 90.0.4430.85+
Fix from $1,950 2021-04-26
Chrome HIGH 8.8
CVE-2021-21193 KEVEPSS 10%

Use after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 89.0.4389.90+
Fix from $1,950 2021-03-16
Chrome HIGH 8.8
CVE-2021-21166 KEVEPSS 24%

Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21148 KEVEPSS 20%

Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 88.0.4324.150+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2020-6572 KEVEPSS 11%

Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

Fix: 81.0.4044.92+
Fix from $1,950 2021-01-14
Chrome CRITICAL 9.6
CVE-2020-16017 KEV

Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 86.0.4240.198+
Fix from $2,300 2021-01-08
Chrome HIGH 8.8
CVE-2020-16013 KEV

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.198 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 86.0.4240.198+
Fix from $1,950 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16010 KEVEPSS 6%

Heap buffer overflow in UI in Google Chrome on Android prior to 86.0.4240.185 allowed a remote attacker who had compromised the renderer process to p…

Fix: 86.0.4240.185+
Fix from $2,300 2020-11-03
Chrome HIGH 8.8
CVE-2020-16009 KEVEPSS 49%

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 86.0.241 / 86.0.622.63+
Fix from $1,950 2020-11-03
Chrome CRITICAL 9.6
CVE-2020-15999 KEVEPSS 44%

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 2.10.4 / 86.0.4240.111+
Fix from $2,300 2020-11-03
Android HIGH 7.8
CVE-2020-0041 KEV

In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of p…

Mitigation only
Fix from $1,950 2020-03-10
Android HIGH 7.8
CVE-2020-0069 KEV

In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missin…

Fix: 9.1.0.340 / 10.0.0.177+
Fix from $1,950 2020-03-10
Chrome HIGH 8.8
CVE-2020-6418 KEVEPSS 79%

Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 80.0.3987.122+
Fix from $1,950 2020-02-27
Chrome MEDIUM 6.5
CVE-2019-5825 KEVEPSS 56%

Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683.86 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 73.0.3683.86+
Fix from $1,600 2019-11-25
Chrome HIGH 8.8
CVE-2019-13720 KEVEPSS 49%

Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 78.0.3904.87+
Fix from $1,950 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5786 KEVEPSS 62%

Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access v…

Fix: 72.0.3626.121+
Fix from $1,600 2019-06-27
Chrome HIGH 8.8
CVE-2018-17480 KEVEPSS 36%

Execution of user supplied Javascript during array deserialization leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80 all…

Fix: 71.0.3578.80+
Fix from $1,950 2018-12-11
Chrome HIGH 8.8
CVE-2018-6065 KEVEPSS 60%

Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3325.146 a…

Fix: 65.0.3325.146+
Fix from $1,950 2018-11-14
Chrome HIGH 8.8
CVE-2018-17463 KEVEPSS 85%

Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a sandbox vi…

Fix: 70.0.3538.67+
Fix from $1,950 2018-11-14
Chrome HIGH 8.8
CVE-2017-5070 KEVEPSS 31%

Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to e…

Fix: 59.0.3071.86 / 59.0.3071.92+
Fix from $1,950 2017-10-27
Chrome HIGH 8.8
CVE-2017-5030 KEVEPSS 42%

Incorrect handling of complex species in V8 in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac and 57.0.2987.108 for Android allowed …

Fix: 57.0.2987.98 / 57.0.2987.108+
Fix from $1,950 2017-04-24
Chrome HIGH 8.8
CVE-2016-5198 KEVEPSS 35%

V8 in Google Chrome prior to 54.0.2840.90 for Linux, and 54.0.2840.85 for Android, and 54.0.2840.87 for Windows and Mac included incorrect optimisati…

Fix: 54.0.2840.85 / 54.0.2840.87+
Fix from $1,950 2017-01-19
Chrome CRITICAL 9.8
CVE-2014-0497 KEVEPSS 100%

Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 11.2.202.3…

Fix: 11.2.202.336 / 11.7.700.261+
Fix from $2,300 2014-02-05
Android HIGH 7.8
CVE-2011-1823 KEVEPSS 42%

The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows local use…

Fix: 2.3.4+
Fix from $1,950 2011-06-09
Chrome HIGH 8.8
CVE-2011-0611 KEVEPSS 94%

Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.19140; an…

Fix: 2.6.19140 / 9.4+
Fix from $1,950 2011-04-13
Chrome HIGH 7.8
CVE-2011-0609 KEVEPSS 67%

Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android;…

Fix: 10.0.648.134+
Fix from $1,950 2011-03-15