CVE-2023-4360
- EPSS 0.35%
- Veröffentlicht 15.08.2023 18:15:12
- Zuletzt bearbeitet 21.11.2024 08:34:55
Inappropriate implementation in Color in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-4361
- EPSS 0.05%
- Veröffentlicht 15.08.2023 18:15:12
- Zuletzt bearbeitet 21.11.2024 08:34:56
Inappropriate implementation in Autofill in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to bypass Autofill restrictions via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-4350
- EPSS 0.32%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:54
Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4351
- EPSS 0.72%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:54
Use after free in Network in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has elicited a browser shutdown to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4352
- EPSS 1.41%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 05.05.2025 16:15:49
Type confusion in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4353
- EPSS 1.37%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 21.11.2024 08:34:54
Heap buffer overflow in ANGLE in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4354
- EPSS 1.97%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 05.05.2025 16:15:49
Heap buffer overflow in Skia in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4355
- EPSS 39.28%
- Veröffentlicht 15.08.2023 18:15:11
- Zuletzt bearbeitet 05.05.2025 16:15:49
Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-4349
- EPSS 0.96%
- Veröffentlicht 15.08.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:34:54
Use after free in Device Trust Connectors in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-32004
- EPSS 0.12%
- Veröffentlicht 15.08.2023 16:15:11
- Zuletzt bearbeitet 08.05.2025 16:15:23
A vulnerability has been discovered in Node.js version 20, specifically within the experimental permission model. This flaw relates to improper handling of Buffers in file system APIs causing a traversal path to bypass when verifying file permissions...