Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2022-0796

Use after free in Media in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 99.0.4844.51+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0797

Out of bounds memory access in Mojo in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to perform an out of bounds memory write via a c…

Fix: 99.0.4844.51+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0798

Use after free in MediaStream in Google Chrome prior to 99.0.4844.51 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 99.0.4844.51+
Fix from $1,950 2022-04-05
Chrome MEDIUM 6.5
CVE-2022-0461

Policy bypass in COOP in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to bypass iframe sandbox via a crafted HTML page.

Fix: 98.0.4758.80+
Fix from $1,600 2022-04-05
Chrome MEDIUM 6.5
CVE-2022-0462

Inappropriate implementation in Scroll in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to leak cross-origin data via a crafted HTML …

Fix: 98.0.4758.80+
Fix from $1,600 2022-04-05
Chrome MEDIUM 6.5
CVE-2022-0792

Out of bounds read in ANGLE in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 99.0.4844.51+
Fix from $1,600 2022-04-05
Chrome CRITICAL 9.6
CVE-2022-0452

Use after free in Safe Browsing in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially perform a sandbox escape via a crafte…

Fix: 98.0.4758.80+
Fix from $2,300 2022-04-05
Chrome HIGH 8.8
CVE-2022-0453

Use after free in Reader Mode in Google Chrome prior to 98.0.4758.80 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 98.0.4758.80+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0454

Heap buffer overflow in ANGLE in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 98.0.4758.80+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0456

Use after free in Web Search in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via profile dest…

Fix: 98.0.4758.80+
Fix from $1,950 2022-04-05
Chrome MEDIUM 6.5
CVE-2022-0455

Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 98.0.4758.80 allowed a remote attacker to spoof the contents of…

Fix: 98.0.4758.80+
Fix from $1,600 2022-04-05
Chrome HIGH 8.8
CVE-2022-0603

Use after free in File Manager in Google Chrome on Chrome OS prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0604

Heap buffer overflow in Tab Groups in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to install a malicious extension …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0605

Use after free in Webstore API in Google Chrome prior to 98.0.4758.102 allowed an attacker who convinced a user to install a malicious extension and …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0606

Use after free in ANGLE in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0607

Use after free in GPU in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0608

Integer overflow in Mojo in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0609 KEVEPSS 21%

Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Chrome HIGH 8.8
CVE-2022-0610

Inappropriate implementation in Gamepad API in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption …

Fix: 98.0.4758.102+
Fix from $1,950 2022-04-05
Android HIGH 7.8
CVE-2021-39789

In Telecom, there is a possible leak of TTY mode change due to a missing permission check. This could lead to local escalation of privilege with no a…

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39790

In Dialer, there is a possible way to manipulate visual voicemail settings due to a missing permission check. This could lead to local escalation of …

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2022-20002

In incfs, there is a possible way of mounting on arbitrary paths due to a missing permission check. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2022-03-30
Android MEDIUM 5.5
CVE-2021-39788

In TelecomManager, there is a possible way to check if a particular self managed phone account was registered on the device due to side channel infor…

Mitigation only
Fix from $1,600 2022-03-30
Android MEDIUM 5.5
CVE-2021-39791

In WallpaperManagerService, there is a possible way to determine whether an app is installed, without query permissions, due to side channel informat…

Mitigation only
Fix from $1,600 2022-03-30
Android HIGH 8.8
CVE-2021-39772

In Bluetooth, there is a possible way to access the a2dp audio control switch due to a missing permission check. This could lead to local escalation …

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39763

In Settings, there is a possible way to make the user enable WiFi due to improper input validation. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39764

In Settings, there is a possible way to display an incorrect app name due to improper input validation. This could lead to local escalation of privil…

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39767

In miniadb, there is a possible way to get read/write access to recovery system properties due to an insecure default value. This could lead to local…

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39768

In Settings, there is a possible way to add an auto-connect WiFi network without the user's consent due to a missing permission check. This could lea…

Mitigation only
Fix from $1,950 2022-03-30
Android HIGH 7.8
CVE-2021-39771

In Settings, there is a possible way to misrepresent which app wants to add a wifi network due to improper input validation. This could lead to local…

Mitigation only
Fix from $1,950 2022-03-30