Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chrome MEDIUM 5.4
CVE-2025-12435

Incorrect security UI in Omnibox in Google Chrome on Android prior to 142.0.7444.59 allowed a remote attacker to perform UI spoofing via a crafted HT…

Fix: 142.0.7444.59+
Fix from $1,600 2025-11-10
Chrome MEDIUM 5.3
CVE-2025-12440

Inappropriate implementation in Autofill in Google Chrome prior to 142.0.7444.59 allowed a remote attacker who convinced a user to engage in specific…

Fix: 142.0.7444.59+
Fix from $1,600 2025-11-10
Chrome HIGH 8.8
CVE-2025-12432

Race in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromiu…

Fix: 142.0.7444.59+
Fix from $1,950 2025-11-10
Chrome HIGH 7.5
CVE-2025-12430

Object lifecycle issue in Media in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch…

Fix: 142.0.7444.59+
Fix from $1,950 2025-11-10
Chrome MEDIUM 6.5
CVE-2025-12431

Inappropriate implementation in Extensions in Google Chrome prior to 142.0.7444.59 allowed an attacker who convinced a user to install a malicious ex…

Fix: 142.0.7444.59+
Fix from $1,600 2025-11-10
Chrome HIGH 8.8
CVE-2025-12429

Inappropriate implementation in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HT…

Fix: 142.0.7444.59+
Fix from $1,950 2025-11-10
Chrome HIGH 8.8
CVE-2025-12428EPSS 7%

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro…

Fix: 142.0.7444.59+
Fix from $1,950 2025-11-10
Chrome HIGH 8.8
CVE-2025-12907

Insufficient validation of untrusted input in Devtools in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to execute arbitrary code vi…

Fix: 140.0.7339.80+
Fix from $1,950 2025-11-08
Chrome MEDIUM 6.2
CVE-2025-12910

Inappropriate implementation in Passkeys in Google Chrome prior to 140.0.7339.80 allowed a local attacker to obtain potentially sensitive information…

Fix: 140.0.7339.80+
Fix from $1,600 2025-11-08
Chrome MEDIUM 5.4
CVE-2025-12905

Inappropriate implementation in Downloads in Google Chrome on Windows prior to 140.0.7339.80 allowed a remote attacker to bypass Mark of the Web via …

Fix: 140.0.7339.80+
Fix from $1,600 2025-11-08
Chrome MEDIUM 5.4
CVE-2025-12906

Inappropriate implementation in Permissions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a crafted HT…

Fix: 140.0.7339.80+
Fix from $1,600 2025-11-08
Chrome MEDIUM 5.4
CVE-2025-12908

Insufficient validation of untrusted input in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform domai…

Fix: 140.0.7339.80+
Fix from $1,600 2025-11-08
Chrome MEDIUM 5.3
CVE-2025-12909

Insufficient policy enforcement in Devtools in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to leak cross-origin data via Devtools.…

Fix: 140.0.7339.80+
Fix from $1,600 2025-11-08
Chrome HIGH 8.8
CVE-2025-11460

Use after free in Storage in Google Chrome prior to 141.0.7390.65 allowed a remote attacker to execute arbitrary code via a crafted video file. (Chro…

Fix: 141.0.7390.65+
Fix from $1,950 2025-11-06
Chrome HIGH 8.8
CVE-2025-11756

Use after free in Safe Browsing in Google Chrome prior to 141.0.7390.107 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 141.0.7390.107+
Fix from $1,950 2025-11-06
Chrome HIGH 8.8
CVE-2025-12036

Out of bounds memory access in V8 in Google Chrome prior to 141.0.7390.122 allowed a remote attacker to perform out of bounds memory access via a cra…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-06
Chrome HIGH 8.1
CVE-2025-11458

Heap buffer overflow in Sync in Google Chrome prior to 141.0.7390.65 allowed a remote attacker to perform an out of bounds memory read via a crafted …

Fix: 141.0.7390.65+
Fix from $1,950 2025-11-06
Chrome HIGH 7.5
CVE-2025-11211

Out of bounds read in Media in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to potentially perform out of bounds memory access via …

Fix: 141.0.7390.54+
Fix from $1,950 2025-11-06
Chrome MEDIUM 6.3
CVE-2025-11212

Inappropriate implementation in Media in Google Chrome on Windows prior to 141.0.7390.54 allowed a remote attacker who convinced a user to engage in …

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Chrome MEDIUM 6.3
CVE-2025-11213

Inappropriate implementation in Omnibox in Google Chrome on Android prior to 141.0.7390.54 allowed a remote attacker who convinced a user to engage i…

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Chrome MEDIUM 6.3
CVE-2025-11216

Inappropriate implementation in Storage in Google Chrome on Mac prior to 141.0.7390.54 allowed a remote attacker to perform domain spoofing via a cra…

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Chrome HIGH 8.8
CVE-2025-11205

Heap buffer overflow in WebGPU in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 141.0.7390.54+
Fix from $1,950 2025-11-06
Chrome HIGH 8.2
CVE-2025-11209

Inappropriate implementation in Omnibox in Google Chrome on Android prior to 141.0.7390.54 allowed a remote attacker to spoof the contents of the Omn…

Fix: 141.0.7390.54+
Fix from $1,950 2025-11-06
Chrome HIGH 7.1
CVE-2025-11206

Heap buffer overflow in Video in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to potentially perform a sandbox escape via a crafted…

Fix: 141.0.7390.54+
Fix from $1,950 2025-11-06
Chrome MEDIUM 6.5
CVE-2025-11207

Side-channel information leakage in Storage in Google Chrome prior to 141.0.7390.54 allowed a remote attacker to perform arbitrary read/write via a c…

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Chrome MEDIUM 6.3
CVE-2025-11208

Inappropriate implementation in Media in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who convinced a user to engage in specific UI…

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Chrome MEDIUM 5.4
CVE-2025-11210

Side-channel information leakage in Tab in Google Chrome prior to 141.0.7390.54 allowed a remote attacker who convinced a user to engage in specific …

Fix: 141.0.7390.54+
Fix from $1,600 2025-11-06
Android MEDIUM 6.7
CVE-2025-20749

In charger, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious ac…

Mitigation only
Fix from $1,600 2025-11-04
Android HIGH 7.8
CVE-2025-20723

In gnss driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malic…

Mitigation only
Fix from $1,950 2025-10-14
Tensorflow HIGH 7.5
CVE-2025-55559

An issue was discovered TensorFlow v2.18.0. A Denial of Service (DoS) occurs when padding is set to 'valid' in tf.keras.layers.Conv2D.

No fix yet
Fix from $1,950 2025-09-25