Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 6.5
CVE-2021-0378

In getNbits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclos…

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 5.5
CVE-2021-0375

In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to an insecure default value. Thi…

Mitigation only
Fix from $1,600 2021-03-10
Android MEDIUM 5.5
CVE-2021-0377

In DeltaPerformer::Write of delta_performer.cc, there is a possible use of untrusted input due to improper input validation. This could lead to a loc…

Mitigation only
Fix from $1,600 2021-03-10
Android HIGH 7.8
CVE-2020-0025

In deletePackageVersionedInternal of PackageManagerService.java, there is a possible way to exit Screen Pinning due to a permissions bypass. This cou…

Patch available
Fix from $1,950 2021-03-10
Chrome HIGH 8.8
CVE-2021-21179

Use after free in Network Internals in Google Chrome on Linux prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption …

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21180

Use after free in tab search in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21188

Use after free in Blink in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21190

Uninitialized data in PDFium in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive information from proces…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21176

Inappropriate implementation in full screen mode in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to spoof the contents of the Omnibo…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21177EPSS 17%

Insufficient policy enforcement in Autofill in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive informat…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21178

Inappropriate implementation in Compositing in Google Chrome on Linux and Windows prior to 89.0.4389.72 allowed a remote attacker to spoof the conten…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21181

Side-channel information leakage in autofill in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive informa…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21182

Insufficient policy enforcement in navigations in Google Chrome prior to 89.0.4389.72 allowed a remote attacker who had compromised the renderer proc…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome HIGH 8.8
CVE-2021-21165

Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21166 KEVEPSS 24%

Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21167

Use after free in bookmarks in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21169

Out of bounds memory access in V8 in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially perform out of bounds memory access…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21174

Inappropriate implementation in Referrer in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to bypass navigation restrictions via a cra…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.1
CVE-2021-21172

Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 89.0.4389.72 allowed a remote attacker to bypass filesystem r…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21163

Insufficient data validation in Reader Mode in Google Chrome on iOS prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via a c…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21164

Insufficient data validation in Chrome on iOS in Google Chrome on iOS prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via a…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21168

Insufficient policy enforcement in appcache in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive informat…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21170

Incorrect security UI in Loader in Google Chrome prior to 89.0.4389.72 allowed a remote attacker who had compromised the renderer process to spoof th…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21171

Incorrect security UI in TabStrip and Navigation in Google Chrome on Android prior to 89.0.4389.72 allowed a remote attacker to spoof the contents of…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21173

Side-channel information leakage in Network Internals in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via …

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome MEDIUM 6.5
CVE-2021-21175

Inappropriate implementation in Site isolation in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via a craft…

Fix: 89.0.4389.72+
Fix from $1,600 2021-03-09
Chrome HIGH 8.8
CVE-2021-21159

Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21160

Heap buffer overflow in WebAudio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21161

Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09
Chrome HIGH 8.8
CVE-2021-21162

Use after free in WebRTC in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 89.0.4389.72+
Fix from $1,950 2021-03-09