CVE-2021-37994
- EPSS 0.34%
- Veröffentlicht 02.11.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:16:13
Inappropriate implementation in iFrame Sandbox in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
CVE-2021-37995
- EPSS 0.36%
- Veröffentlicht 02.11.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:16:13
Inappropriate implementation in WebApp Installer in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially overlay and spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2021-37996
- EPSS 0.16%
- Veröffentlicht 02.11.2021 22:15:08
- Zuletzt bearbeitet 21.11.2024 06:16:13
Insufficient validation of untrusted input Downloads in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to bypass navigation restrictions via a malicious file.
CVE-2021-37977
- EPSS 0.77%
- Veröffentlicht 02.11.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:10
Use after free in Garbage Collection in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-37978
- EPSS 2.29%
- Veröffentlicht 02.11.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:10
Heap buffer overflow in Blink in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-37979
- EPSS 1.71%
- Veröffentlicht 02.11.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:10
heap buffer overflow in WebRTC in Google Chrome prior to 94.0.4606.81 allowed a remote attacker who convinced a user to browse to a malicious website to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-37980
- EPSS 0.31%
- Veröffentlicht 02.11.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:16:11
Inappropriate implementation in Sandbox in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially bypass site isolation via Windows.
CVE-2021-3903
- EPSS 0.37%
- Veröffentlicht 27.10.2021 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:22:44
vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-25219
- EPSS 0.71%
- Veröffentlicht 27.10.2021 21:15:07
- Zuletzt bearbeitet 21.11.2024 05:54:34
In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Supported Preview Edition, as well as release versions 9.17.0 -> 9.17.18 of the BIND 9.17 development branch, exploitation of broken ...
CVE-2021-41182
- EPSS 19.26%
- Veröffentlicht 26.10.2021 15:15:10
- Zuletzt bearbeitet 21.11.2024 06:25:41
jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `altField` option of the Datepicker widget from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. Any str...