CVE-2021-21212
- EPSS 0.87%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Incorrect security UI in Network Config UI in Google Chrome on ChromeOS prior to 90.0.4430.72 allowed a remote attacker to potentially compromise WiFi connection security via a malicious WAP.
CVE-2021-21213
- EPSS 1.5%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Use after free in WebMIDI in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21214
- EPSS 1.09%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Use after free in Network API in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension.
CVE-2021-21215
- EPSS 0.7%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2021-21216
- EPSS 0.94%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2021-21217
- EPSS 0.57%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21218
- EPSS 0.6%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21219
- EPSS 0.6%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21220
- EPSS 90.02%
- Published 26.04.2021 17:15:08
- Last modified 22.10.2025 00:17:21
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21221
- EPSS 1.21%
- Published 26.04.2021 17:15:08
- Last modified 21.11.2024 05:47:48
Insufficient validation of untrusted input in Mojo in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page.