CVE-2024-5158
- EPSS 0.14%
- Veröffentlicht 22.05.2024 16:15:10
- Zuletzt bearbeitet 19.12.2024 19:59:03
Type Confusion in V8 in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to potentially perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
CVE-2024-35947
- EPSS 0.02%
- Veröffentlicht 19.05.2024 12:15:08
- Zuletzt bearbeitet 04.04.2025 14:23:31
In the Linux kernel, the following vulnerability has been resolved: dyndbg: fix old BUG_ON in >control parser Fix a BUG_ON from 2009. Even if it looks "unreachable" (I didn't really look), lets make sure by removing it, doing pr_err and return -EI...
CVE-2024-36048
- EPSS 0.48%
- Veröffentlicht 18.05.2024 21:15:47
- Zuletzt bearbeitet 04.11.2025 22:16:01
QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.
CVE-2024-4947
- EPSS 0.26%
- Veröffentlicht 15.05.2024 21:15:09
- Zuletzt bearbeitet 24.10.2025 14:07:06
Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
CVE-2024-4948
- EPSS 0.19%
- Veröffentlicht 15.05.2024 21:15:09
- Zuletzt bearbeitet 19.12.2024 20:38:52
Use after free in Dawn in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-4949
- EPSS 0.33%
- Veröffentlicht 15.05.2024 21:15:09
- Zuletzt bearbeitet 19.12.2024 20:21:58
Use after free in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-4950
- EPSS 0.1%
- Veröffentlicht 15.05.2024 21:15:09
- Zuletzt bearbeitet 28.03.2025 20:15:25
Inappropriate implementation in Downloads in Google Chrome prior to 125.0.6422.60 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
CVE-2024-3044
- EPSS 0.73%
- Veröffentlicht 14.05.2024 21:15:12
- Zuletzt bearbeitet 10.12.2025 19:10:17
Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deeme...
CVE-2024-4761
- EPSS 4.81%
- Veröffentlicht 14.05.2024 16:17:35
- Zuletzt bearbeitet 24.10.2025 14:07:18
Out of bounds write in V8 in Google Chrome prior to 124.0.6367.207 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
CVE-2024-4855
- EPSS 0.02%
- Veröffentlicht 14.05.2024 15:45:19
- Zuletzt bearbeitet 07.08.2025 17:17:07
Use after free issue in editcap could cause denial of service via crafted capture file