CVE-2020-6383
- EPSS 26.96%
- Published 27.02.2020 23:15:12
- Last modified 21.11.2024 05:35:37
Type confusion in V8 in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6384
- EPSS 0.81%
- Published 27.02.2020 23:15:12
- Last modified 21.11.2024 05:35:37
Use after free in WebAudio in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6386
- EPSS 0.84%
- Published 27.02.2020 23:15:12
- Last modified 21.11.2024 05:35:37
Use after free in speech in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6418
- EPSS 86.79%
- Published 27.02.2020 23:15:12
- Last modified 05.02.2025 13:56:44
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-3757
- EPSS 5.41%
- Published 13.02.2020 16:15:13
- Last modified 21.11.2024 05:31:41
Adobe Flash Player versions 32.0.0.321 and earlier, 32.0.0.314 and earlier, 32.0.0.321 and earlier, and 32.0.0.255 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
CVE-2013-4535
- EPSS 0.38%
- Published 11.02.2020 16:15:12
- Last modified 21.11.2024 01:55:46
The virtqueue_map_sg function in hw/virtio/virtio.c in QEMU before 1.7.2 allows remote attackers to execute arbitrary files via a crafted savevm image, related to virtio-block or virtio-serial read.
CVE-2020-6415
- EPSS 2.9%
- Published 11.02.2020 15:15:14
- Last modified 21.11.2024 05:35:41
Inappropriate implementation in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6416
- EPSS 3.87%
- Published 11.02.2020 15:15:14
- Last modified 21.11.2024 05:35:41
Insufficient data validation in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6396
- EPSS 1.37%
- Published 11.02.2020 15:15:13
- Last modified 21.11.2024 05:35:38
Inappropriate implementation in Skia in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2020-6397
- EPSS 1.37%
- Published 11.02.2020 15:15:13
- Last modified 21.11.2024 05:35:38
Inappropriate implementation in sharing in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof security UI via a crafted HTML page.