Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.8
CVE-2023-40140

In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code due to a use after free. This c…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.0
CVE-2023-40131

In GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no…

Patch available
Fix from $1,950 2023-10-27
Android MEDIUM 5.5
CVE-2023-40133

In multiple locations of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local …

Patch available
Fix from $1,600 2023-10-27
Android MEDIUM 5.5
CVE-2023-40139

In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclo…

Patch available
Fix from $1,600 2023-10-27
Android HIGH 8.8
CVE-2023-40129

In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adj…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40116

In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the cod…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40117

In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass. This could lead to local escalati…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40120

In multiple locations, there is a possible way to bypass user notification of foreground services due to improper input validation. This could lead t…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40125

In onCreate of ApnEditor.java, there is a possible way for a Guest user to change the APN due to a permission bypass. This could lead to local escala…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40128

In several functions of xmlregexp.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of pr…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.8
CVE-2023-40130

In notifyTimeout of CallRedirectionProcessor, there is a possible permission bypass due to a logic error in the code. This could lead to local escala…

Patch available
Fix from $1,950 2023-10-27
Android MEDIUM 5.5
CVE-2023-40121

In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization. This could lead to local informatio…

Patch available
Fix from $1,600 2023-10-27
Android MEDIUM 5.5
CVE-2023-40123

In updateActionViews of PipMenuView.java, there is a possible bypass of a multi user security boundary due to a confused deputy. This could lead to l…

Patch available
Fix from $1,600 2023-10-27
Chrome HIGH 8.8
CVE-2023-5472

Use after free in Profiles in Google Chrome prior to 118.0.5993.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 118.0.5993.117+
Fix from $1,950 2023-10-25
Android HIGH 7.5
CVE-2023-35656

In multiple functions of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remot…

Mitigation only
Fix from $1,950 2023-10-18
Android HIGH 7.5
CVE-2023-35663

In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information …

Mitigation only
Fix from $1,950 2023-10-18
Chrome MEDIUM 6.5
CVE-2023-5487

Inappropriate implementation in Fullscreen in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a malicious ex…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome HIGH 8.8
CVE-2023-5218

Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 118.0.5993.70+
Fix from $1,950 2023-10-11
Chrome HIGH 8.8
CVE-2023-5474

Heap buffer overflow in PDF in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who convinced a user to engage in specific user interac…

Fix: 118.0.5993.70+
Fix from $1,950 2023-10-11
Chrome HIGH 8.8
CVE-2023-5476

Use after free in Blink History in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 118.0.5993.70+
Fix from $1,950 2023-10-11
Chrome MEDIUM 6.5
CVE-2023-5475

Inappropriate implementation in DevTools in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a malicious exte…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome MEDIUM 6.5
CVE-2023-5479

Inappropriate implementation in Extensions API in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a maliciou…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome MEDIUM 6.5
CVE-2023-5481

Inappropriate implementation in Downloads in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML p…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome MEDIUM 6.5
CVE-2023-5483

Inappropriate implementation in Intents in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass content security policy via a cra…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome MEDIUM 6.5
CVE-2023-5484

Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML …

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Chrome MEDIUM 6.3
CVE-2023-5473

Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Android HIGH 7.8
CVE-2023-3781

there is a possible use-after-free write due to improper locking. This could lead to local escalation of privilege with no additional execution privi…

Mitigation only
Fix from $1,950 2023-10-11
Android CRITICAL 9.8
CVE-2023-35647

In ProtocolEmbmsGlobalCellIdAdapter::Init() of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This c…

Mitigation only
Fix from $2,300 2023-10-11
Android CRITICAL 9.8
CVE-2023-35648

In ProtocolMiscLceIndAdapter::GetConfLevel() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This c…

Mitigation only
Fix from $2,300 2023-10-11
Android CRITICAL 9.8
CVE-2023-35662

there is a possible out of bounds write due to buffer overflow. This could lead to remote code execution with no additional execution privileges need…

No fix yet
Fix from $2,300 2023-10-11