CVE-2021-21222
- EPSS 0.39%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Heap buffer overflow in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
CVE-2021-21223
- EPSS 1.63%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Integer overflow in Mojo in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-21224
- EPSS 54.38%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 22.10.2025 00:17:21
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
CVE-2021-21225
- EPSS 0.89%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Out of bounds memory access in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21226
- EPSS 1.35%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Use after free in navigation in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-3472
- EPSS 0.09%
- Veröffentlicht 26.04.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:37
A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in xserver which can lead to a local privilege escalation. The highest threat from this vulnerability is to data confidentiality and integrity as well as s...
CVE-2020-15078
- EPSS 0.29%
- Veröffentlicht 26.04.2021 14:15:08
- Zuletzt bearbeitet 21.11.2024 05:04:45
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.
CVE-2021-29470
- EPSS 0.19%
- Veröffentlicht 23.04.2021 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:01:11
Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 versions v0.27.3 and earlier. The out-of-bounds read is triggered when Exiv2 is used t...
CVE-2021-22204
- EPSS 92.81%
- Veröffentlicht 23.04.2021 18:15:08
- Zuletzt bearbeitet 22.10.2025 00:17:23
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code execution when parsing the malicious image
CVE-2021-22207
- EPSS 0.47%
- Veröffentlicht 23.04.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 05:49:42
Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file