CVE-2026-83596
- EPSS 0.29%
- Veröffentlicht 31.08.2026 20:46:24
- Zuletzt bearbeitet 30.09.2026 23:17:01
A flaw was found in WebKitGTK. Processing malicious web content can cause memory corruption due to improper memory handling.
CVE-2026-78376
- EPSS 0.28%
- Veröffentlicht 24.08.2026 13:29:17
- Zuletzt bearbeitet 30.09.2026 23:17:00
A flaw was found in WebKitGTK. Processing malicious web content can cause a use-after-free issue due to improper memory handling and result in memory corruption.
CVE-2016-9643
- EPSS 3.07%
- Veröffentlicht 07.03.2017 16:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrated in a large number of ($ (open parenthesis and dollar) followed by {-2,16} and a large number of +) (plus close parenthesis).
CVE-2016-9642
- EPSS 1.27%
- Veröffentlicht 03.02.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascript file.
CVE-2010-1766
- EPSS 2.25%
- Veröffentlicht 22.07.2010 05:42:55
- Zuletzt bearbeitet 16.06.2026 23:19:16
Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r56380, as used in Qt and other products, allows remote websockets servers to cause a denial of service (memory ...
- EPSS 3.11%
- Veröffentlicht 12.11.2009 17:54:58
- Zuletzt bearbeitet 16.06.2026 23:12:39
WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that calls the JavaScript setInterval method, which triggers an incompatibility between the WTF::c...
- EPSS 1.95%
- Veröffentlicht 05.02.2009 00:30:00
- Zuletzt bearbeitet 16.06.2026 23:01:29
xml/XMLHttpRequest.cpp in WebCore in WebKit before r38566 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via...