Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2020-16035

Insufficient data validation in cros-disks in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the brows…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16037

Use after free in clipboard in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16038

Use after free in media in Google Chrome on OS X prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Chrome MEDIUM 6.5
CVE-2020-16027

Insufficient policy enforcement in developer tools in Google Chrome prior to 87.0.4280.66 allowed an attacker who convinced a user to install a malic…

Fix: 87.0.4280.66+
Fix from $1,600 2021-01-08
Chrome MEDIUM 6.5
CVE-2020-16036

Inappropriate implementation in cookies in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to bypass cookie restrictions via a crafted …

Fix: 87.0.4280.66+
Fix from $1,600 2021-01-08
Chrome MEDIUM 6.1
CVE-2020-16030

Insufficient data validation in Blink in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via…

Fix: 87.0.4280.66+
Fix from $1,600 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16014

Use after free in PPAPI in Google Chrome prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially perf…

Fix: 87.0.4280.66+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16016

Inappropriate implementation in base in Google Chrome prior to 86.0.4240.193 allowed a remote attacker who had compromised the renderer process to po…

Fix: 86.0.4240.193+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16017 KEV

Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 86.0.4240.198+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16018

Use after free in payments in Google Chrome prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 87.0.4280.66+
Fix from $2,300 2021-01-08
Chrome HIGH 8.8
CVE-2020-16013 KEV

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.198 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 86.0.4240.198+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16015

Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16019

Inappropriate implementation in filesystem in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the brows…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16020

Inappropriate implementation in cryptohome in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the brows…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 7.5
CVE-2020-16021

Race in image burner in Google Chrome on ChromeOS prior to 87.0.4280.66 allowed a remote attacker who had compromised the browser process to perform …

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Android MEDIUM 5.5
CVE-2021-3022

An issue was discovered on LG mobile devices with Android OS 10 software. There was no write protection for the MTK protect2 partition. The LG ID is …

Mitigation only
Fix from $1,600 2021-01-05
Android HIGH 8.8
CVE-2021-22492

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Broadcom Bluetooth chipsets) software. The Bluetooth UART driver …

Mitigation only
Fix from $1,950 2021-01-05
Android MEDIUM 5.5
CVE-2021-22494

An issue was discovered in the fingerprint scanner on Samsung Note20 mobile devices with Q(10.0) software. When a screen protector is used, the requi…

Mitigation only
Fix from $1,600 2021-01-05
Android MEDIUM 5.5
CVE-2021-22495

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) (Exynos chipsets) software. The Mali GPU driver allows ou…

Mitigation only
Fix from $1,600 2021-01-05
Flatbuffers HIGH 7.5
CVE-2020-35864

An issue was discovered in the flatbuffers crate through 2020-04-11 for Rust. read_scalar (and read_scalar_at) can transmute values without unsafe bl…

Fix: after 1.12.0
Fix from $1,950 2020-12-31
Flatbuffers CRITICAL 9.8
CVE-2019-25004

An issue was discovered in the flatbuffers crate before 0.6.1 for Rust. Arbitrary bytes can be reinterpreted as a bool, defeating soundness.

Fix: 0.6.1+
Fix from $2,300 2020-12-31
Android HIGH 8.8
CVE-2020-35693

On some Samsung phones and tablets running Android through 7.1.1, it is possible for an attacker-controlled Bluetooth Low Energy (BLE) device to pair…

Fix: after 7.1.1
Fix from $1,950 2020-12-24
Android HIGH 7.8
CVE-2020-35554

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. There is a WebView SSL error-handler vulnerability. The …

Mitigation only
Fix from $1,950 2020-12-18
Android HIGH 7.8
CVE-2020-35555

An issue was discovered on LG mobile devices with Android OS 10 software. When a dual-screen configuration is supported, the device does not lock upo…

Mitigation only
Fix from $1,950 2020-12-18
Android HIGH 7.5
CVE-2020-35553

An issue was discovered on Samsung mobile devices with Q(10.0) and R(11.0) (Qualcomm SM8250 chipsets) software. They allows attackers to cause a deni…

Mitigation only
Fix from $1,950 2020-12-18
Android MEDIUM 5.3
CVE-2020-35552

An issue was discovered in the GPS daemon on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (non-Qualcomm chipsets) software. Attackers can …

Mitigation only
Fix from $1,600 2020-12-18
Android CRITICAL 9.8
CVE-2020-35550

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (…

Mitigation only
Fix from $2,300 2020-12-18
Android CRITICAL 9.8
CVE-2020-35551

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. They allow attackers to conduct RPMB s…

Mitigation only
Fix from $2,300 2020-12-18
Android MEDIUM 5.5
CVE-2020-35548

An issue was discovered in Finder on Samsung mobile devices with Q(10.0) software. A call to a non-existent provider allows attackers to cause a deni…

Mitigation only
Fix from $1,600 2020-12-18
Android MEDIUM 5.5
CVE-2020-35549

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Any application may establish itself as the default dial…

Mitigation only
Fix from $1,600 2020-12-18