CVE-2021-21164
- EPSS 0.41%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:41
Insufficient data validation in Chrome on iOS in Google Chrome on iOS prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
CVE-2021-21165
- EPSS 1.35%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:41
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21166
- EPSS 36.7%
- Published 09.03.2021 18:15:16
- Last modified 04.02.2025 18:26:34
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21167
- EPSS 1.28%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:41
Use after free in bookmarks in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21168
- EPSS 1.36%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:41
Insufficient policy enforcement in appcache in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
CVE-2021-21169
- EPSS 1.28%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:42
Out of bounds memory access in V8 in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
CVE-2021-21170
- EPSS 0.97%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:42
Incorrect security UI in Loader in Google Chrome prior to 89.0.4389.72 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2021-21171
- EPSS 0.97%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:42
Incorrect security UI in TabStrip and Navigation in Google Chrome on Android prior to 89.0.4389.72 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2021-21172
- EPSS 0.42%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:42
Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 89.0.4389.72 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
CVE-2021-21173
- EPSS 1.16%
- Published 09.03.2021 18:15:16
- Last modified 21.11.2024 05:47:42
Side-channel information leakage in Network Internals in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page.