CVE-2023-5854
- EPSS 0.66%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 29.04.2025 21:15:50
Use after free in Profiles in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via specific UI gestures. (Chromium security severity: Medium)
CVE-2023-5855
- EPSS 0.66%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 29.04.2025 21:15:50
Use after free in Reading Mode in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via specific UI gestures. (Chromium security severity: Med...
CVE-2023-5856
- EPSS 0.66%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 29.04.2025 21:15:51
Use after free in Side Panel in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium...
CVE-2023-5857
- EPSS 1.25%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:42:38
Inappropriate implementation in Downloads in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potentially execute arbitrary code via a malicious file. (Chromium security severity: Medium)
CVE-2023-5858
- EPSS 0.71%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 12.06.2025 15:15:35
Inappropriate implementation in WebApp Provider in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (Chromium security severity: Low)
CVE-2023-5859
- EPSS 0.67%
- Veröffentlicht 01.11.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:42:38
Incorrect security UI in Picture In Picture in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform domain spoofing via a crafted local HTML page. (Chromium security severity: Low)
CVE-2023-5480
- EPSS 0.23%
- Veröffentlicht 01.11.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:41:51
Inappropriate implementation in Payments in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to bypass XSS preventions via a malicious file. (Chromium security severity: High)
CVE-2023-5482
- EPSS 13.86%
- Veröffentlicht 01.11.2023 18:15:09
- Zuletzt bearbeitet 30.04.2025 15:15:59
Insufficient data validation in USB in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
CVE-2023-5472
- EPSS 1.46%
- Veröffentlicht 25.10.2023 18:17:43
- Zuletzt bearbeitet 01.05.2025 19:15:56
Use after free in Profiles in Google Chrome prior to 118.0.5993.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-5485
- EPSS 0.05%
- Veröffentlicht 11.10.2023 23:15:11
- Zuletzt bearbeitet 16.06.2025 17:15:27
Inappropriate implementation in Autofill in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass autofill restrictions via a crafted HTML page. (Chromium security severity: Low)