Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 6.5
CVE-2021-21134EPSS 5%

Incorrect security UI in Page Info in Google Chrome on iOS prior to 88.0.4324.96 allowed a remote attacker to spoof security UI via a crafted HTML pa…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21135EPSS 19%

Inappropriate implementation in Performance API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a craf…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21136

Insufficient policy enforcement in WebView in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via …

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21137EPSS 6%

Inappropriate implementation in DevTools in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to obtain potentially sensitive information…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21139

Inappropriate implementation in iframe sandbox in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass navigation restrictions via…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21141EPSS 5%

Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass file extension policy v…

Fix: 88.0.705.74 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21121EPSS 6%

Use after free in Omnibox in Google Chrome on Linux prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a cra…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $2,300 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21124EPSS 8%

Potential user after free in Speech Recognizer in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to potentially perform a s…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $2,300 2021-02-09
Chrome HIGH 8.8
CVE-2021-21118EPSS 17%

Insufficient data validation in V8 in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially perform out of bounds memory acces…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2021-21119EPSS 7%

Use after free in Media in Google Chrome prior to 88.0.4324.96 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2021-21120EPSS 7%

Use after free in WebSQL in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2021-21122EPSS 7%

Use after free in Blink in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.1
CVE-2021-21125EPSS 8%

Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem r…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 7.8
CVE-2021-21117

Insufficient policy enforcement in Cryptohome in Google Chrome prior to 88.0.4324.96 allowed a local attacker to perform OS-level privilege escalatio…

Fix: 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome MEDIUM 6.5
CVE-2021-21123EPSS 10%

Insufficient data validation in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem restrictions vi…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,600 2021-02-09
Chrome HIGH 8.8
CVE-2020-16044

Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted SCTP p…

Fix: 88.0.4324.96+
Fix from $1,950 2021-02-09
Android MEDIUM 5.5
CVE-2020-11836

OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enf…

Mitigation only
Fix from $1,600 2021-02-06
Android HIGH 7.5
CVE-2021-0351

In wlan driver, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service with no additional execut…

Mitigation only
Fix from $1,950 2021-02-04
Android MEDIUM 6.7
CVE-2021-0343

In kisd, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System executio…

Mitigation only
Fix from $1,600 2021-02-04
Android MEDIUM 6.7
CVE-2021-0344

In mtkpower, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-04
Android MEDIUM 6.7
CVE-2021-0345

In mobile_log_d, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with …

Mitigation only
Fix from $1,600 2021-02-04
Android MEDIUM 6.7
CVE-2021-0346

In vpu, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-04
Android MEDIUM 6.7
CVE-2021-0348

In vpu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2021-02-04
Android MEDIUM 6.7
CVE-2021-0349

In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-04
Android CRITICAL 9.8
CVE-2021-26687

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. In preloaded applications, the HostnameVerified default …

Mitigation only
Fix from $2,300 2021-02-04
Android CRITICAL 9.8
CVE-2021-26688

An issue was discovered on LG Wing mobile devices with Android OS 10 software. The biometric sensor has weak security properties. The LG ID is LVE-SM…

No fix yet
Fix from $2,300 2021-02-04
Android CRITICAL 9.8
CVE-2021-26689

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. The USB laf gadget has a use-after-free. The LG ID is LV…

Mitigation only
Fix from $2,300 2021-02-04
Android MEDIUM 6.7
CVE-2021-0365

In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0359

In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execu…

Mitigation only
Fix from $1,600 2021-02-03
Android MEDIUM 6.7
CVE-2021-0360

In netdiag, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System ex…

Mitigation only
Fix from $1,600 2021-02-03