CVE-2021-21214
- EPSS 1.09%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Use after free in Network API in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension.
CVE-2021-21215
- EPSS 0.7%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2021-21216
- EPSS 0.94%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2021-21217
- EPSS 0.57%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21218
- EPSS 0.6%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21219
- EPSS 0.6%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21221
- EPSS 1.21%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Insufficient validation of untrusted input in Mojo in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page.
CVE-2021-21222
- EPSS 0.53%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Heap buffer overflow in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
CVE-2021-21223
- EPSS 1.57%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Integer overflow in Mojo in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-21224
- EPSS 55.78%
- Published 26.04.2021 17:15:08
- Last modified 22.10.2025 00:17:21
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.