Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2019-13696 Use after free in JavaScript in Google Chrome prior to 77.0.3865.120 allowed a remote attacker to potentially exploit heap corruption via a crafted H… Chrome 77.0.3865.120+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13698 Out of bounds memory access in JavaScript in Google Chrome prior to 73.0.3683.103 allowed a remote attacker to potentially exploit heap corruption vi… Chrome 73.0.3683.103+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13699 Use after free in media in Google Chrome prior to 78.0.3904.70 allowed a remote attacker who had compromised the renderer process to potentially expl… Chrome 78.0.3904.70+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13700 Out of bounds memory access in the gamepad API in Google Chrome prior to 78.0.3904.70 allowed a remote attacker who had compromised the renderer proc… Chrome 78.0.3904.70+ Fix from $1,9502019-11-25 HIGH 7.8 CVE-2019-13702 Inappropriate implementation in installer in Google Chrome on Windows prior to 78.0.3904.70 allowed a local attacker to perform privilege escalation … Chrome 78.0.3904.70+ Fix from $1,9502019-11-25 HIGH 7.8 CVE-2019-13706 Out of bounds memory access in PDFium in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to potentially exploit heap corruption via a c… Chrome 78.0.3904.70+ Fix from $1,9502019-11-25 MEDIUM 6.5 CVE-2019-13697 Insufficient policy enforcement in performance APIs in Google Chrome prior to 77.0.3865.120 allowed a remote attacker to leak cross-origin data via a… Chrome 77.0.3865.120+ Fix from $1,6002019-11-25 HIGH 8.8 CVE-2019-13682 Insufficient policy enforcement in external protocol handling in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass same origin … Chrome 77.0.3865.75+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13685 Use after free in sharing view in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 77.0.3865.90+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13686 Use after free in offline mode in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted … Chrome 77.0.3865.90+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13687 Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… Chrome 77.0.3865.90+ Fix from $1,9502019-11-25 HIGH 8.8 CVE-2019-13688 Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… Chrome 77.0.3865.90+ Fix from $1,9502019-11-25 MEDIUM 6.5 CVE-2019-13678 Incorrect data validation in downloads in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to perform domain spoofing via a crafted HTML… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 6.5 CVE-2019-13683 Insufficient policy enforcement in developer tools in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to leak cross-origin data via a c… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 5.3 CVE-2019-13680 Inappropriate implementation in TLS in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof client IP address to websites via craft… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 5.3 CVE-2019-13684 Inappropriate implementation in JavaScript in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to leak cross-origin data via a crafted H… Chrome 72.0.3626.81+ Fix from $1,6002019-11-25 HIGH 7.4 CVE-2019-13666 Information leak in storage in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to leak cross-origin data via a crafted HTML page. Chrome 77.0.3865.75+ Fix from $1,9502019-11-25 HIGH 7.4 CVE-2019-13668 Insufficient policy enforcement in developer tools in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to leak cross-origin data via a c… Chrome 77.0.3865.75+ Fix from $1,9502019-11-25 HIGH 7.4 CVE-2019-13673 Insufficient data validation in developer tools in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to leak cross-origin data via a craf… Chrome 77.0.3865.75+ Fix from $1,9502019-11-25 MEDIUM 6.5 CVE-2019-13662 Insufficient policy enforcement in navigations in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass content security policy via… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 6.5 CVE-2019-13664 Insufficient policy enforcement in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass content security policy via a cra… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 6.5 CVE-2019-13665 Insufficient filtering in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass multiple file download protection via a cr… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 6.5 CVE-2019-13670 Insufficient data validation in JavaScript in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption vi… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 6.5 CVE-2019-13677 Insufficient policy enforcement in site isolation in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass site isolation via a cra… Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 MEDIUM 5.3 CVE-2019-13660 UI spoofing in Chromium in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof notifications via a crafted HTML page. Chrome 77.0.3865.75+ Fix from $1,6002019-11-25 CRITICAL 9.8 CVE-2016-5194 Unspecified vulnerabilities in Google Chrome before 54.0.2840.59. Chrome 54.0.2840.59+ Fix from $2,3002019-11-20 CRITICAL 9.8 CVE-2016-9652 Multiple unspecified vulnerabilities in Google Chrome before 55.0.2883.75. Chrome 55.0.2883.75+ Fix from $2,3002019-11-20 HIGH 7.8 CVE-2019-2210 In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalati… Android Mitigation only Fix from $1,9502019-11-13 MEDIUM 6.7 CVE-2019-9467 In the Bootloader, there is a possible kernel command injection due to missing command sanitization. This could lead to a local elevation of privileg… Android Mitigation only Fix from $1,6002019-11-13 HIGH 7.5 CVE-2019-2211 In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information disclosure with no additiona… Android Mitigation only Fix from $1,9502019-11-13