CVE-2019-5800
- EPSS 0.32%
- Published 23.05.2019 20:29:01
- Last modified 21.11.2024 04:45:31
Insufficient policy enforcement in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.
CVE-2019-5801
- EPSS 0.22%
- Published 23.05.2019 20:29:01
- Last modified 21.11.2024 04:45:31
Incorrect eliding of URLs in Omnibox in Google Chrome on iOS prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
CVE-2019-5802
- EPSS 0.22%
- Published 23.05.2019 20:29:01
- Last modified 21.11.2024 04:45:31
Incorrect handling of download origins in Navigation in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
CVE-2019-5803
- EPSS 0.32%
- Published 23.05.2019 20:29:01
- Last modified 21.11.2024 04:45:31
Insufficient policy enforcement in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.
CVE-2019-5804
- EPSS 0.07%
- Published 23.05.2019 20:29:01
- Last modified 21.11.2024 04:45:31
Incorrect command line processing in Chrome in Google Chrome prior to 73.0.3683.75 allowed a local attacker to perform domain spoofing via a crafted domain name.
CVE-2019-5787
- EPSS 1.58%
- Published 23.05.2019 20:29:00
- Last modified 21.11.2024 04:45:29
Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2019-5788
- EPSS 44.89%
- Published 23.05.2019 20:29:00
- Last modified 21.11.2024 04:45:29
An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.
CVE-2019-5789
- EPSS 38.36%
- Published 23.05.2019 20:29:00
- Last modified 21.11.2024 04:45:29
An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.
CVE-2019-5790
- EPSS 3.54%
- Published 23.05.2019 20:29:00
- Last modified 21.11.2024 04:45:29
An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
CVE-2019-5791
- EPSS 1.97%
- Published 23.05.2019 20:29:00
- Last modified 21.11.2024 04:45:30
Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.