CVE-2022-2859
- EPSS 1.28%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 21.05.2025 20:15:27
Use after free in Chrome OS Shell in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via specific UI interactions.
CVE-2022-2860
- EPSS 0.16%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 21.05.2025 20:15:27
Insufficient policy enforcement in Cookies in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to bypass cookie prefix restrictions via a crafted HTML page.
CVE-2022-2861
- EPSS 0.47%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 21.05.2025 20:15:27
Inappropriate implementation in Extensions API in Google Chrome prior to 104.0.5112.101 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary scripts into WebUI via a crafted HTML page.
CVE-2022-3038
- EPSS 46.55%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 24.10.2025 14:10:31
Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-3039
- EPSS 0.64%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 21.05.2025 19:15:57
Use after free in WebSQL in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-3040
- EPSS 0.43%
- Veröffentlicht 26.09.2022 16:15:11
- Zuletzt bearbeitet 21.05.2025 19:15:57
Use after free in Layout in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-2852
- EPSS 1.15%
- Veröffentlicht 26.09.2022 16:15:10
- Zuletzt bearbeitet 22.05.2025 15:15:54
Use after free in FedCM in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-2853
- EPSS 1.26%
- Veröffentlicht 26.09.2022 16:15:10
- Zuletzt bearbeitet 22.05.2025 15:15:55
Heap buffer overflow in Downloads in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-3204
- EPSS 0.34%
- Veröffentlicht 26.09.2022 14:15:11
- Zuletzt bearbeitet 05.05.2025 16:15:19
A vulnerability named 'Non-Responsive Delegation Attack' (NRDelegation Attack) has been discovered in various DNS resolving software. The NRDelegation Attack works by having a malicious delegation with a considerable number of non responsive nameserv...
CVE-2022-21797
- EPSS 0.22%
- Veröffentlicht 26.09.2022 05:15:10
- Zuletzt bearbeitet 21.11.2024 06:45:27
The package joblib from 0 and before 1.2.0 are vulnerable to Arbitrary Code Execution via the pre_dispatch flag in Parallel() class due to the eval() statement.