CVE-2019-8375
- EPSS 16.11%
- Veröffentlicht 24.02.2019 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:49:46
The UIProcess subsystem in WebKit, as used in WebKitGTK through 2.23.90 and WebKitGTK+ through 2.22.6 and other products, does not prevent the script dialog size from exceeding the web view size, which allows remote attackers to cause a denial of ser...
CVE-2019-6251
- EPSS 4.09%
- Veröffentlicht 14.01.2019 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:46:18
WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 ...
CVE-2015-2330
- EPSS 1.69%
- Veröffentlicht 10.03.2017 02:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Late TLS certificate verification in WebKitGTK+ prior to 2.6.6 allows remote attackers to view a secure HTTP request, including, for example, secure cookies.
CVE-2010-4577
- EPSS 2.21%
- Veröffentlicht 22.12.2010 01:00:03
- Zuletzt bearbeitet 16.06.2026 23:25:06
The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google Chrome before 8.0.552.224, Chrome OS before 8.0.552.343, webkitgtk before 1.2.6, and other products does not properly parse Cascading Style Sheets (CSS...
CVE-2010-4206
- EPSS 2.52%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:21
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service ...
CVE-2010-4204
- EPSS 2.26%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:21
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or possibly have unspecified othe...
CVE-2010-4198
- EPSS 1.5%
- Veröffentlicht 06.11.2010 00:00:02
- Zuletzt bearbeitet 16.06.2026 23:24:20
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, does not properly handle large text areas, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified oth...
CVE-2010-4197
- EPSS 2.31%
- Veröffentlicht 06.11.2010 00:00:02
- Zuletzt bearbeitet 16.06.2026 23:24:20
Use-after-free vulnerability in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving text ...
CVE-2010-1807
- EPSS 61.32%
- Veröffentlicht 10.09.2010 19:00:02
- Zuletzt bearbeitet 16.06.2026 23:19:22
WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-point data, which allows remote attackers to execute arbitrary code or cause a denial of service (applic...
CVE-2010-1814
- EPSS 4.22%
- Veröffentlicht 09.09.2010 22:00:01
- Zuletzt bearbeitet 16.06.2026 23:19:23
WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors involving form menus.