Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2021-30543

Use after free in Tab Strip in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.1
CVE-2021-30536

Out of bounds read in V8 in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit stack corruption via a crafted HTML …

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome MEDIUM 6.5
CVE-2021-30531

Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass content securit…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome MEDIUM 6.5
CVE-2021-30533 KEVEPSS 17%

Insufficient policy enforcement in PopupBlocker in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass navigation restrictions vi…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome MEDIUM 6.5
CVE-2021-30534

Insufficient policy enforcement in iFrameSandbox in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass navigation restrictions v…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome MEDIUM 6.5
CVE-2021-30540

Incorrect security UI in payments in Google Chrome on Android prior to 91.0.4472.77 allowed a remote attacker to perform domain spoofing via a crafte…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome MEDIUM 5.4
CVE-2021-30539

Insufficient policy enforcement in content security policy in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass content securit…

Fix: 91.0.4472.77+
Fix from $1,600 2021-06-07
Chrome HIGH 8.8
CVE-2021-30516

Heap buffer overflow in History in Google Chrome prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30517

Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30518

Heap buffer overflow in Reader Mode in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30519

Use after free in Payments in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious payments app to po…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30520

Use after free in Tab Strip in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to pote…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30506

Incorrect security UI in Web App Installs in Google Chrome on Android prior to 90.0.4430.212 allowed an attacker who convinced a user to install a we…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30507

Inappropriate implementation in Offline in Google Chrome on Android prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30508

Heap buffer overflow in Media Feeds in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to enable certain features in Ch…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30509

Out of bounds write in Tab Strip in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30510

Use after free in Aura in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30512

Use after free in Notifications in Google Chrome prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30513

Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30514

Use after free in Autofill in Google Chrome prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30515

Use after free in File API in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.1
CVE-2021-30511

Out of bounds read in Tab Groups in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Tensorflow HIGH 7.8
CVE-2021-29614

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.io.decode_raw` produces incorrect results and crashe…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29616

TensorFlow is an end-to-end open source platform for machine learning. The implementation of TrySimplify(https://github.com/tensorflow/tensorflow/blo…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.1
CVE-2021-29613

TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `tf.raw_ops.CTCLoss` allows an attacker to trigger an…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29615

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `ParseAttrValue`(https://github.com/tensorflow/tensorflo…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29617

TensorFlow is an end-to-end open source platform for machine learning. An attacker can cause a denial of service via `CHECK`-fail in `tf.strings.subs…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29618

TensorFlow is an end-to-end open source platform for machine learning. Passing a complex argument to `tf.transpose` at the same time as passing `conj…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29619

TensorFlow is an end-to-end open source platform for machine learning. Passing invalid arguments (e.g., discovered via fuzzing) to `tf.raw_ops.Sparse…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29591

TensorFlow is an end-to-end open source platform for machine learning. TFlite graphs must not have loops between nodes. However, this condition was n…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14