CVE-2023-2938
- EPSS 0.13%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 18.03.2025 19:15:41
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security s...
CVE-2023-2939
- EPSS 0.02%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:38
Insufficient data validation in Installer in Google Chrome on Windows prior to 114.0.5735.90 allowed a local attacker to perform privilege escalation via crafted symbolic link. (Chromium security severity: Medium)
CVE-2023-2940
- EPSS 0.02%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 12.03.2025 18:15:25
Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to bypass file access restrictions via a crafted HTML page. (Chromium security severity: Mediu...
CVE-2023-2941
- EPSS 0.08%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 11.03.2025 17:15:47
Inappropriate implementation in Extensions API in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to spoof the contents of the UI via a crafted Chrome Extension. (Chromium security severi...
CVE-2023-2929
- EPSS 0.54%
- Veröffentlicht 30.05.2023 22:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:37
Out of bounds write in Swiftshader in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2721
- EPSS 0.23%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2023-2722
- EPSS 0.31%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2723
- EPSS 16.46%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2724
- EPSS 12.75%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2725
- EPSS 11.27%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Use after free in Guest View in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)