CVE-2010-1767
- EPSS 0.63%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a...
CVE-2010-1772
- EPSS 1.99%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted web ...
CVE-2010-1773
- EPSS 1.78%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cause a denial of service (memory...
CVE-2010-1823
- EPSS 2.54%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit before r65958, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger use of document APIs such as doc...
CVE-2010-1824
- EPSS 15.87%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit, as used in Apple iTunes before 10.2 on Windows, Apple Safari, and Google Chrome before 6.0.472.59, allows remote attackers to execute arbitrary code or cause a denial of service via vectors related to SVG style...
CVE-2010-1825
- EPSS 1.62%
- Published 24.09.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to nested SVG elements.
- EPSS 0.16%
- Published 16.09.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Google Chrome before 6.0.472.59 on Linux does not properly handle cursors, which might allow attackers to cause a denial of service (assertion failure) via unspecified vectors.
CVE-2010-3412
- EPSS 0.22%
- Published 16.09.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Race condition in the console implementation in Google Chrome before 6.0.472.59 has unspecified impact and attack vectors.
- EPSS 0.54%
- Published 16.09.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in the pop-up blocking functionality in Google Chrome before 6.0.472.59 allows remote attackers to cause a denial of service (application crash) via unknown vectors.
- EPSS 0.25%
- Published 16.09.2010 21:00:02
- Last modified 11.04.2025 00:51:21
Google Chrome before 6.0.472.59 on Mac OS X does not properly implement file dialogs, which allows attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors. NOTE: this issue exists beca...