Vulnerability index

Browse CVEs

90 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2023-35674 KEV In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the code. This could lead to local e… Android Patch available Fix from $1,9502023-09-11 HIGH 8.8 CVE-2023-4762 KEVEPSS 40% Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium … Chrome 116.0.1938.76 / 116.0.5845.179+ Fix from $1,9502023-09-05 MEDIUM 5.5 CVE-2023-21237 KEV In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insuffic… Android Mitigation only Fix from $1,6002023-06-28 HIGH 8.8 CVE-2023-3079 KEVEPSS 32% Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 7.1.5 / 114.0.5735.110+ Fix from $1,9502023-06-05 CRITICAL 9.6 CVE-2023-2136 KEVEPSS 6% Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially p… Chrome 112.0.5615.137+ Fix from $2,3002023-04-19 HIGH 8.8 CVE-2023-2033 KEVEPSS 41% Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 7.1.5 / 112.0.5615.121+ Fix from $1,9502023-04-14 HIGH 7.8 CVE-2023-20963 KEV In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. … Android Patch available Fix from $1,9502023-03-24 HIGH 8.8 CVE-2022-4262 KEVEPSS 15% Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 108.0.5359.94+ Fix from $1,9502022-12-02 CRITICAL 9.6 CVE-2022-4135 KEVEPSS 32% Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentiall… Chrome 107.0.1418.62 / 107.0.5304.121+ Fix from $2,3002022-11-25 HIGH 8.8 CVE-2022-3723 KEVEPSS 8% Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 107.0.5304.87+ Fix from $1,9502022-11-01 CRITICAL 9.6 CVE-2022-3075 KEVEPSS 6% Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to p… Chrome 105.0.5195.102+ Fix from $2,3002022-09-26 HIGH 8.8 CVE-2022-3038 KEVEPSS 25% Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a craf… Chrome 105.0.5195.52+ Fix from $1,9502022-09-26 MEDIUM 6.5 CVE-2022-2856 KEV Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily br… Chrome 104.0.5112.101 / 104.0.5112.102+ Fix from $1,6002022-09-26 HIGH 8.8 CVE-2022-2294 KEVEPSS 70% Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafte… Chrome 2.36.5 / 10.15.7+ Fix from $1,9502022-07-28 HIGH 8.8 CVE-2022-1364 KEVEPSS 14% Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentially exploit heap corruption via a crafted… Chrome 100.0.4896.127+ Fix from $1,9502022-07-26 HIGH 8.8 CVE-2022-1096 KEVEPSS 24% Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 99.0.4844.84+ Fix from $1,9502022-07-23 HIGH 8.8 CVE-2022-0609 KEVEPSS 21% Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HT… Chrome 98.0.4758.102+ Fix from $1,9502022-04-05 HIGH 7.8 CVE-2021-39793 KEV In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. This could lead to loca… Android Mitigation only Fix from $1,9502022-03-16 HIGH 8.8 CVE-2021-4102 KEVEPSS 8% Use after free in V8 in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 96.0.4664.110+ Fix from $1,9502022-02-11 HIGH 7.8 CVE-2022-22265 KEV An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code executio… Android Mitigation only Fix from $1,9502022-01-10 HIGH 7.8 CVE-2021-1048 KEV In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privi… Android Patch available Fix from $1,9502021-12-15 HIGH 8.8 CVE-2021-38003 KEVEPSS 39% Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a craf… Chrome 95.0.4638.69+ Fix from $1,9502021-11-23 MEDIUM 6.1 CVE-2021-38000 KEV Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily brow… Chrome 95.0.4638.69+ Fix from $1,6002021-11-23 CRITICAL 9.6 CVE-2021-37973 KEVEPSS 12% Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially pe… Chrome 94.0.4606.61+ Fix from $2,3002021-10-08 HIGH 8.8 CVE-2021-37975 KEVEPSS 35% Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 94.0.4606.71+ Fix from $1,9502021-10-08 MEDIUM 6.5 CVE-2021-37976 KEVEPSS 20% Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information f… Chrome 94.0.4606.71+ Fix from $1,6002021-10-08 CRITICAL 9.6 CVE-2021-30633 KEVEPSS 33% Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised the renderer process to potenti… Chrome 93.0.4577.82+ Fix from $2,3002021-10-08 HIGH 8.8 CVE-2021-30632 KEVEPSS 65% Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML … Chrome 93.0.4577.82+ Fix from $1,9502021-10-08 HIGH 8.8 CVE-2021-30563 KEVEPSS 9% Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 91.0.4472.164+ Fix from $1,9502021-08-03 HIGH 8.8 CVE-2021-30554 KEVEPSS 7% Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p… Chrome 91.0.4472.114+ Fix from $1,9502021-07-02