Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 5.5
CVE-2023-38445

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges

No fix yet
Fix from $1,600 2023-09-04
Android MEDIUM 5.5
CVE-2023-38446

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges

Mitigation only
Fix from $1,600 2023-09-04
Chrome HIGH 8.8
CVE-2023-4572

Use after free in MediaStream in Google Chrome prior to 116.0.5845.140 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 116.0.5845.140+
Fix from $1,950 2023-08-29
Chrome CRITICAL 9.6
CVE-2019-13690

Inappropriate implementation in OS in Google Chrome on ChromeOS prior to 75.0.3770.80 allowed a remote attacker to perform OS-level privilege escalat…

Fix: 75.0.3770.80+
Fix from $2,300 2023-08-25
Chrome HIGH 7.8
CVE-2019-13689

Inappropriate implementation in OS in Google Chrome on ChromeOS prior to 75.0.3770.80 allowed a remote attacker to perform arbitrary read/write via a…

Fix: 75.0.3770.80+
Fix from $1,950 2023-08-25
Chrome HIGH 8.8
CVE-2022-4452

Insufficient data validation in crosvm in Google Chrome prior to 107.0.5304.62 allowed a remote attacker to potentially exploit object corruption via…

Fix: 107.0.5304.62+
Fix from $1,950 2023-08-25
Chrome HIGH 8.8
CVE-2023-4429

Use after free in Loader in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.8
CVE-2023-4430EPSS 9%

Use after free in Vulkan in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.1
CVE-2023-4427EPSS 34%

Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a cr…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.1
CVE-2023-4428EPSS 11%

Out of bounds memory access in CSS in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a c…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.1
CVE-2023-4431

Out of bounds memory access in Fonts in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Critters MEDIUM 6.1
CVE-2023-3481

Critters versions 0.0.17-0.0.19 have an issue when parsing the HTML, which leads to a potential cross-site scripting (XSS) bug. We recommend upgradin…

Fix: after 0.0.19
Fix from $1,600 2023-08-21
Chrome HIGH 8.8
CVE-2023-4362EPSS 19%

Heap buffer overflow in Mojom IDL in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised the renderer process and gain…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4366

Use after free in Extensions in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4368

Insufficient policy enforcement in Extensions API in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install a malic…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4369

Insufficient data validation in Systems Extensions in Google Chrome on ChromeOS prior to 116.0.5845.120 allowed an attacker who convinced a user to i…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome MEDIUM 6.5
CVE-2023-4367

Insufficient policy enforcement in Extensions API in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install a malic…

Fix: 116.0.5845.96+
Fix from $1,600 2023-08-15
Chrome HIGH 8.8
CVE-2023-4356

Use after free in Audio in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has convinced a user to engage in specific UI interacti…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4357EPSS 47%

Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to bypass file access restriction…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4358

Use after free in DNS in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome MEDIUM 5.3
CVE-2023-4359

Inappropriate implementation in App Launcher in Google Chrome on iOS prior to 116.0.5845.96 allowed a remote attacker to potentially spoof elements o…

Fix: 116.0.5845.96+
Fix from $1,600 2023-08-15
Chrome MEDIUM 5.3
CVE-2023-4361

Inappropriate implementation in Autofill in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to bypass Autofill restrictions…

Fix: 116.0.5845.96+
Fix from $1,600 2023-08-15
Chrome HIGH 8.8
CVE-2023-4351

Use after free in Network in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has elicited a browser shutdown to potentially exploi…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4352

Type confusion in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4353

Heap buffer overflow in ANGLE in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4354

Heap buffer overflow in Skia in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4355EPSS 28%

Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome MEDIUM 6.5
CVE-2023-4350

Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to potentially spoof the cont…

Fix: 116.0.5845.96+
Fix from $1,600 2023-08-15
Chrome HIGH 8.8
CVE-2023-2312

Use after free in Offline in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker who had compromised the renderer process to po…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4349

Use after free in Device Trust Connectors in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15