Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 6.5
CVE-2022-1129

Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to spoof the contents o…

Fix: 100.0.4896.60+
Fix from $1,600 2022-07-23
Chrome MEDIUM 6.5
CVE-2022-1137

Inappropriate implementation in Extensions in Google Chrome prior to 100.0.4896.60 allowed an attacker who convinced a user to install a malicious ex…

Fix: 100.0.4896.60+
Fix from $1,600 2022-07-23
Chrome MEDIUM 6.5
CVE-2022-1138

Inappropriate implementation in Web Cursor in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who had compromised the renderer process…

Fix: 100.0.4896.60+
Fix from $1,600 2022-07-23
Chrome MEDIUM 6.5
CVE-2022-1139

Inappropriate implementation in Background Fetch API in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to leak cross-origin data via …

Fix: 100.0.4896.60+
Fix from $1,600 2022-07-23
Chrome MEDIUM 6.1
CVE-2022-1132

Inappropriate implementation in Virtual Keyboard in Google Chrome on Chrome OS prior to 100.0.4896.60 allowed a local attacker to bypass navigation r…

Fix: 100.0.4896.60+
Fix from $1,600 2022-07-23
Chrome HIGH 8.8
CVE-2022-0978

Use after free in ANGLE in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-22
Chrome HIGH 8.8
CVE-2022-0979

Use after free in Safe Browsing in Google Chrome on Android prior to 99.0.4844.74 allowed a remote attacker who convinced a user to engage in specifi…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-22
Chrome HIGH 8.8
CVE-2022-0980

Use after free in New Tab Page in Google Chrome prior to 99.0.4844.74 allowed an attacker who convinced a user to install a malicious extension to po…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-22
Chrome CRITICAL 9.6
CVE-2022-0977

Use after free in Browser UI in Google Chrome on Chrome OS prior to 99.0.4844.74 allowed a remote attacker who convinced a user to engage in specific…

Fix: 99.0.4844.74+
Fix from $2,300 2022-07-21
Chrome CRITICAL 9.6
CVE-2022-0973

Use after free in Safe Browsing in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 99.0.4844.74+
Fix from $2,300 2022-07-21
Chrome HIGH 8.8
CVE-2022-0971

Use after free in Blink Layout in Google Chrome on Android prior to 99.0.4844.74 allowed a remote attacker who had compromised the renderer process t…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-21
Chrome HIGH 8.8
CVE-2022-0972

Use after free in Extensions in Google Chrome prior to 99.0.4844.74 allowed an attacker who convinced a user to install a malicious extension to pote…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-21
Chrome HIGH 8.8
CVE-2022-0974

Use after free in Splitscreen in Google Chrome on Chrome OS prior to 99.0.4844.74 allowed a remote attacker who convinced a user to engage in specifi…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-21
Chrome HIGH 8.8
CVE-2022-0975

Use after free in ANGLE in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-21
Chrome HIGH 8.8
CVE-2022-0976

Heap buffer overflow in GPU in Google Chrome prior to 99.0.4844.74 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 99.0.4844.74+
Fix from $1,950 2022-07-21
Android CRITICAL 9.8
CVE-2022-20222

In read_attr_value of gatt_db.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution wit…

Patch available
Fix from $2,300 2022-07-13
Android CRITICAL 9.8
CVE-2022-20229

In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead…

Patch available
Fix from $2,300 2022-07-13
Android CRITICAL 9.8
CVE-2022-20238

'remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be cont…

Patch available
Fix from $2,300 2022-07-13
Android HIGH 7.8
CVE-2022-20220

In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lead to local escalation of priv…

Patch available
Fix from $1,950 2022-07-13
Android HIGH 7.8
CVE-2022-20223

In assertSafeToStartCustomActivity of AppRestrictionsFragment.java, there is a possible way to start a phone call without permissions due to a confus…

Patch available
Fix from $1,950 2022-07-13
Android HIGH 7.5
CVE-2022-20224

In AT_SKIP_REST of bta_hf_client_at.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote informatio…

Patch available
Fix from $1,950 2022-07-13
Android HIGH 7.5
CVE-2022-20234

In Car Settings app, the NotificationAccessConfirmationActivity is exported. In NotificationAccessConfirmationActivity, it gets both 'mComponentName'…

Patch available
Fix from $1,950 2022-07-13
Android HIGH 7.5
CVE-2022-20236

A drm driver have oob problem, could cause the system crash or EOPProduct: AndroidVersions: Android SoCAndroid ID: A-233124709

Patch available
Fix from $1,950 2022-07-13
Android MEDIUM 6.5
CVE-2022-20221

In avrc_ctrl_pars_vendor_cmd of avrc_pars_ct.cc, there is a possible out of bounds read due to improper input validation. This could lead to remote i…

Patch available
Fix from $1,600 2022-07-13
Android MEDIUM 6.5
CVE-2022-20228

In various functions of C2DmaBufAllocator.cpp, there is a possible memory corruption due to a use after free. This could lead to remote information d…

Patch available
Fix from $1,600 2022-07-13
Android MEDIUM 5.5
CVE-2022-20219

In multiple functions of StorageManagerService.java and UserManagerService.java, there is a possible way to leave user's directories unencrypted due …

Mitigation only
Fix from $1,600 2022-07-13
Android MEDIUM 5.5
CVE-2022-20225

In getSubscriptionProperty of SubscriptionController.java, there is a possible read of a sensitive identifier due to a missing permission check. This…

Patch available
Fix from $1,600 2022-07-13
Android MEDIUM 5.5
CVE-2022-20227

In USB driver, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with User execut…

Patch available
Fix from $1,600 2022-07-13
Android MEDIUM 5.5
CVE-2022-20230

In choosePrivateKeyAlias of KeyChain.java, there is a possible access to the user's certificate due to improper input validation. This could lead to …

Patch available
Fix from $1,600 2022-07-13
Android CRITICAL 9.8
CVE-2022-20216

android exported is used to set third-party app access permissions, and the default value of intent-filter is true. com.sprd.firewall has set exporte…

Mitigation only
Fix from $2,300 2022-07-13