Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 6.5
CVE-2020-6506

Insufficient policy enforcement in WebView in Google Chrome on Android prior to 83.0.4103.106 allowed a remote attacker to bypass site isolation via …

Fix: 83.0.4103.106+
Fix from $1,600 2020-07-22
Chrome MEDIUM 6.5
CVE-2020-6511

Information leak in content security policy in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross-origin data via a crafted …

Fix: 84.0.4147.89+
Fix from $1,600 2020-07-22
Chrome MEDIUM 6.5
CVE-2020-6514EPSS 8%

Inappropriate implementation in WebRTC in Google Chrome prior to 84.0.4147.89 allowed an attacker in a privileged network position to potentially exp…

Fix: 13.1.2 / 13.6+
Fix from $1,600 2020-07-22
Chrome MEDIUM 6.5
CVE-2020-6519EPSS 11%

Policy bypass in CSP in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to bypass content security policy via a crafted HTML page.

Fix: 84.0.4147.89+
Fix from $1,600 2020-07-22
Chrome MEDIUM 6.5
CVE-2020-6521

Side-channel information leakage in autofill in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to obtain potentially sensitive informa…

Fix: 84.0.4147.89+
Fix from $1,600 2020-07-22
Chrome CRITICAL 9.6
CVE-2020-6505

Use after free in speech in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML…

Fix: 83.0.4103.106+
Fix from $2,300 2020-07-22
Android CRITICAL 9.8
CVE-2020-0224

In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code executio…

Patch available
Fix from $2,300 2020-07-17
Android CRITICAL 9.8
CVE-2020-0225

In a2dp_vendor_ldac_decoder_decode_packet of a2dp_vendor_ldac_decoder.cc, there is a possible out of bounds write due to a missing bounds check. This…

Patch available
Fix from $2,300 2020-07-17
Android CRITICAL 9.8
CVE-2020-0230

There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: Android SoCAndroid ID: A-156337262

Mitigation only
Fix from $2,300 2020-07-17
Android CRITICAL 9.8
CVE-2020-0231

There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: Android SoCAndroid ID: A-156333727

Mitigation only
Fix from $2,300 2020-07-17
Android HIGH 7.8
CVE-2020-0226

In createWithSurfaceParent of Client.cpp, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2020-07-17
Android HIGH 7.8
CVE-2020-0227

In onCommand of CompanionDeviceManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to loca…

Patch available
Fix from $1,950 2020-07-17
Android HIGH 7.5
CVE-2020-0228

There is an improper configuration of recorder related service. Product: AndroidVersions: Android SoCAndroid ID: A-156333723

No fix yet
Fix from $1,950 2020-07-17
Android MEDIUM 6.7
CVE-2020-0122

In the permission declaration for com.google.android.providers.gsf.permission.WRITE_GSERVICES in AndroidManifest.xml, there is a possible permissions…

Patch available
Fix from $1,600 2020-07-17
Android MEDIUM 5.5
CVE-2020-0107

In getUiccCardsInfo of PhoneInterfaceManager.java, there is a possible permissions bypass due to improper input validation. This could lead to local …

Patch available
Fix from $1,600 2020-07-17
Android HIGH 7.8
CVE-2020-0120

In notifyErrorForPendingRequests of QCamera3HWI.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local …

Mitigation only
Fix from $1,950 2020-07-17
Android MEDIUM 6.4
CVE-2020-0305

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System e…

Patch available
Fix from $1,600 2020-07-17
Oauth Client Library For Java CRITICAL 9.1
CVE-2020-7692

PKCE support is not implemented in accordance with the RFC for OAuth 2.0 for Native Apps. Without the use of PKCE, the authorization code returned by…

Fix: 1.31.0+
Fix from $2,300 2020-07-09
Android HIGH 7.5
CVE-2020-15579

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via …

Mitigation only
Fix from $1,950 2020-07-07
Android MEDIUM 5.5
CVE-2020-15577

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Cameralyzer allows attackers to write files to the SD card. The S…

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.5
CVE-2020-15578

An issue was discovered on Samsung mobile devices with O(8.x) software. FactoryCamera does not properly restrict runtime permissions. The Samsung ID …

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.5
CVE-2020-15580

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) by e…

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.5
CVE-2020-15582

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth Low Energy (BLE) component h…

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.5
CVE-2020-15583

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows directory traversal for access to…

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.5
CVE-2020-15584

An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wall…

Mitigation only
Fix from $1,600 2020-07-07
Android MEDIUM 5.3
CVE-2020-15581

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The kernel logging feature allows attackers to discover …

Mitigation only
Fix from $1,600 2020-07-07
Guest Oslogin HIGH 7.8
CVE-2020-8903

A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/co…

Fix: after 20200507.00
Fix from $1,950 2020-06-22
Guest Oslogin HIGH 7.8
CVE-2020-8907

A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/co…

Fix: after 20200507.00
Fix from $1,950 2020-06-22
Guest Oslogin HIGH 7.8
CVE-2020-8933

A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/co…

Fix: after 20200507.00
Fix from $1,950 2020-06-22
Android CRITICAL 9.8
CVE-2020-0223

This is an unbounded write into kernel global memory, via a user-controlled buffer size.Product: AndroidVersions: Android kernelAndroid ID: A-1351304…

Mitigation only
Fix from $2,300 2020-06-16