Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2024-2410
The JsonToBinaryStream() function is part of the protocol buffers C++ implementation and is used to parse JSON from a stream. If the input is broken …
Protobuf
4.25.0+
HIGH 8.8
CVE-2024-4058EPSS 9%
Type confusion in ANGLE in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…
Chrome
124.0.6367.78+
HIGH 8.8
CVE-2024-4331
Use after free in Picture In Picture in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a …
Chrome
124.0.6367.118+
HIGH 8.8
CVE-2024-4368
Use after free in Dawn in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…
Chrome
124.0.6367.118+
MEDIUM 6.5
CVE-2024-4059
Out of bounds read in V8 API in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to leak cross-site data via a crafted HTML page. (Chro…
Chrome
124.0.6367.78+
MEDIUM 6.5
CVE-2024-4060
Use after free in Dawn in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…
Chrome
124.0.6367.78+
MEDIUM 6.5
CVE-2024-3914
Use after free in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…
Chrome
124.0.6367.60+
HIGH 8.8
CVE-2024-3832
Object corruption in V8 in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a crafted HTML…
Chrome
124.0.6367.60+
HIGH 8.8
CVE-2024-3833EPSS 18%
Object corruption in WebAssembly in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit object corruption via a cra…
Chrome
124.0.6367.60+
HIGH 8.8
CVE-2024-3834
Use after free in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…
Chrome
124.0.6367.60+
HIGH 8.8
CVE-2024-3837
Use after free in QUIC in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who had compromised the renderer process to potentially expl…
Chrome
124.0.6367.60+
HIGH 7.5
CVE-2024-3840
Insufficient policy enforcement in Site Isolation in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass navigation restrictions…
Chrome
124.0.6367.60+
MEDIUM 6.5
CVE-2024-3839
Out of bounds read in Fonts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to obtain potentially sensitive information from proces…
Chrome
124.0.6367.60+
MEDIUM 6.1
CVE-2024-3841
Insufficient data validation in Browser Switcher in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to inject scripts or HTML into a p…
Chrome
124.0.6367.60+
MEDIUM 6.1
CVE-2024-3847
Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass content security policy via a cr…
Chrome
124.0.6367.60+
MEDIUM 5.5
CVE-2024-3838
Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed an attacker who convinced a user to install a malicious app …
Chrome
124.0.6367.60+
CRITICAL 9.6
CVE-2024-3157
Out of bounds memory access in Compositing in Google Chrome prior to 123.0.6312.122 allowed a remote attacker who had compromised the GPU process to …
Chrome
123.0.6312.122+
MEDIUM 6.5
CVE-2024-3515
Use after free in Dawn in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…
Chrome
123.0.6312.122+
MEDIUM 6.5
CVE-2024-3516
Heap buffer overflow in ANGLE in Google Chrome prior to 123.0.6312.122 allowed a remote attacker to potentially exploit heap corruption via a crafted…
Chrome
123.0.6312.122+
HIGH 7.8
CVE-2023-52351
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System executi…
Android
Mitigation only
HIGH 7.5
CVE-2023-52341
In Plaintext COUNTER CHECK message accepted before AS security activation, there is a possible missing permission check. This could lead to remote in…
Android
Mitigation only
HIGH 7.5
CVE-2023-52342
In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote information disclosure no add…
Android
No fix yet
MEDIUM 6.0
CVE-2023-52345
In modem driver, there is a possible system crash due to improper input validation. This could lead to local information disclosure with System execu…
Android
No fix yet
MEDIUM 5.9
CVE-2023-52534
In ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote denial of service with no additional execu…
Android
No fix yet
MEDIUM 5.5
CVE-2023-52343
In SecurityCommand message after as security has been actived., there is a possible improper input validation. This could lead to remote information …
Android
No fix yet
MEDIUM 5.5
CVE-2023-52347
In ril service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System executi…
Android
Mitigation only
MEDIUM 5.5
CVE-2023-52352
In Network Adapter Service, there is a possible missing permission check. This could lead to local denial of service with no additional execution pri…
Android
Mitigation only
MEDIUM 5.3
CVE-2023-52344
In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote information disclosure no add…
Android
Mitigation only
MEDIUM 5.3
CVE-2023-52533
In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote information disclosure no add…
Android
No fix yet
HIGH 8.8
CVE-2024-3156EPSS 13%
Inappropriate implementation in V8 in Google Chrome prior to 123.0.6312.105 allowed a remote attacker to potentially perform out of bounds memory acc…
Chrome
123.0.6312.105+