Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2020-6415

Inappropriate implementation in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6416

Insufficient data validation in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 7.8
CVE-2020-6417

Inappropriate implementation in installer in Google Chrome prior to 80.0.3987.87 allowed a local attacker to execute arbitrary code via a crafted reg…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome MEDIUM 5.4
CVE-2020-6411

Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to perform domain spoofing via…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 5.4
CVE-2020-6412

Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to perform domain spoofing via…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome HIGH 8.8
CVE-2020-6398

Use of uninitialized data in PDFium in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6402

Insufficient policy enforcement in downloads in Google Chrome on OS X prior to 80.0.3987.87 allowed an attacker who convinced a user to install a mal…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6404

Inappropriate implementation in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6406

Use after free in audio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6397

Inappropriate implementation in sharing in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof security UI via a crafted HTML page.

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6399

Insufficient policy enforcement in AppCache in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted …

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6400

Inappropriate implementation in CORS in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted HTML pa…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6401

Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to perform domain spoofing via…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6405

Out of bounds read in SQLite in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to obtain potentially sensitive information from proces…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6408

Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potentially sensitive information v…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome HIGH 8.8
CVE-2020-6380

Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.130 allowed a remote attacker who had compromised the renderer proc…

Fix: 79.0.3945.130+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6381

Integer overflow in JavaScript in Google Chrome on ChromeOS and Android prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap c…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6382

Type confusion in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6385

Insufficient policy enforcement in storage in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass site isolation via a crafted HT…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6387

Out of bounds write in WebRTC in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted v…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6388

Out of bounds access in WebAudio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6389

Out of bounds write in WebRTC in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted v…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6390

Out of bounds memory access in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6393

Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted HTM…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 6.5
CVE-2020-6395

Out of bounds read in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to obtain potentially sensitive information from pr…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome MEDIUM 5.4
CVE-2020-6394

Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass content security policy via a cra…

Fix: 80.0.3987.87+
Fix from $1,600 2020-02-11
Chrome HIGH 8.8
CVE-2020-6378

Use after free in speech in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 79.0.3945.130+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6379

Use after free in V8 in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 79.0.3945.130+
Fix from $1,950 2020-02-11
Android HIGH 8.8
CVE-2014-7224

A Code Execution vulnerability exists in Android prior to 4.4.0 related to the addJavascriptInterface method and the accessibility and accessibilityT…

Fix: 4.4+
Fix from $1,950 2020-02-07
Chrome MEDIUM 6.5
CVE-2010-3917

Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.

Fix: 3.0+
Fix from $1,600 2020-02-06