Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2024-0050

In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to a missing validation check. This could lead to a loc…

Patch available
Fix from $1,950 2024-03-11
Android HIGH 7.8
CVE-2024-0051

In onQueueFilled of SoftMPEG4.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of priv…

Patch available
Fix from $1,950 2024-03-11
Android MEDIUM 6.7
CVE-2024-0044

In createSessionInternal of PackageInstallerService.java, there is a possible run-as any app due to improper input validation. This could lead to loc…

Patch available
Fix from $1,600 2024-03-11
Android MEDIUM 6.5
CVE-2024-0045

In smp_proc_sec_req of smp_act.cc, there is a possible out of bounds read due to improper input validation. This could lead to remote (proximal/adjac…

Patch available
Fix from $1,600 2024-03-11
Android MEDIUM 5.5
CVE-2024-0047

In writeUserLP of UserManagerService.java, device policies are serialized with an incorrect tag due to a logic error in the code. This could lead to …

Patch available
Fix from $1,600 2024-03-11
Chrome HIGH 8.8
CVE-2024-2174EPSS 13%

Inappropriate implementation in V8 in Google Chrome prior to 122.0.6261.111 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 122.0.6261.111+
Fix from $1,950 2024-03-06
Chrome HIGH 8.8
CVE-2024-2176

Use after free in FedCM in Google Chrome prior to 122.0.6261.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 122.0.6261.111+
Fix from $1,950 2024-03-06
Chrome HIGH 8.8
CVE-2024-2173EPSS 14%

Out of bounds memory access in V8 in Google Chrome prior to 122.0.6261.111 allowed a remote attacker to perform out of bounds memory access via a cra…

Fix: 122.0.6261.111+
Fix from $1,950 2024-03-06
Android HIGH 8.4
CVE-2024-20029

In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with Sys…

Mitigation only
Fix from $1,950 2024-03-04
Android HIGH 7.9
CVE-2024-20027

In da, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,950 2024-03-04
Android HIGH 7.2
CVE-2024-20034

In battery, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System e…

Mitigation only
Fix from $1,950 2024-03-04
Android MEDIUM 6.7
CVE-2024-20025

In da, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution pri…

Mitigation only
Fix from $1,600 2024-03-04
Android MEDIUM 6.7
CVE-2024-20031

In da, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2024-03-04
Android MEDIUM 6.7
CVE-2024-20032

In aee, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,600 2024-03-04
Android MEDIUM 6.7
CVE-2024-20037

In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could lead to local escalation of privilege with System …

Mitigation only
Fix from $1,600 2024-03-04
Android MEDIUM 6.6
CVE-2024-20028

In da, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2024-03-04
Android MEDIUM 6.0
CVE-2024-20024

In flashc, there is a possible out of bounds write due to lack of valudation. This could lead to local escalation of privilege with System execution …

Mitigation only
Fix from $1,600 2024-03-04
Android HIGH 8.2
CVE-2024-20005

In da, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $1,950 2024-03-04
Chrome HIGH 8.8
CVE-2024-1938

Type Confusion in V8 in Google Chrome prior to 122.0.6261.94 allowed a remote attacker to potentially exploit object corruption via a crafted HTML pa…

Fix: 122.0.6261.94+
Fix from $1,950 2024-02-29
Chrome HIGH 8.8
CVE-2024-1939

Type Confusion in V8 in Google Chrome prior to 122.0.6261.94 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 122.0.6261.94+
Fix from $1,950 2024-02-29
Chrome HIGH 8.8
CVE-2024-1669

Out of bounds memory access in Blink in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to perform out of bounds memory access via a c…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1670EPSS 9%

Use after free in Mojo in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1673

Use after free in Accessibility in Google Chrome prior to 122.0.6261.57 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1674

Inappropriate implementation in Navigation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass navigation restrictions via a …

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome HIGH 8.8
CVE-2024-1675EPSS 11%

Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a…

Fix: 122.0.6261.57+
Fix from $1,950 2024-02-21
Chrome MEDIUM 6.5
CVE-2024-1671

Inappropriate implementation in Site Isolation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security policy vi…

Fix: 122.0.6261.57+
Fix from $1,600 2024-02-21
Chrome MEDIUM 5.4
CVE-2024-1672

Inappropriate implementation in Content Security Policy in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security …

Fix: 122.0.6261.57+
Fix from $1,600 2024-02-21
Chrome MEDIUM 5.4
CVE-2024-1676EPSS 19%

Inappropriate implementation in Navigation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to spoof security UI via a crafted HTML …

Fix: 122.0.6261.57+
Fix from $1,600 2024-02-21
Android HIGH 7.8
CVE-2024-0018

In convertYUV420Planar16ToY410 of ColorConverter.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local…

Patch available
Fix from $1,950 2024-02-16
Android HIGH 7.8
CVE-2024-0021

In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way for an app in the work profile to enable notification listener se…

Patch available
Fix from $1,950 2024-02-16