CVE-2022-1858
- EPSS 0.44%
- Published 27.07.2022 22:15:08
- Last modified 21.11.2024 06:41:37
Out of bounds read in DevTools in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform an out of bounds memory read via specific user interaction.
CVE-2022-1859
- EPSS 0.54%
- Published 27.07.2022 22:15:08
- Last modified 21.11.2024 06:41:37
Use after free in Performance Manager in Google Chrome prior to 102.0.5005.61 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via a crafted HTML page.
CVE-2022-1860
- EPSS 0.74%
- Published 27.07.2022 22:15:08
- Last modified 21.11.2024 06:41:37
Use after free in UI Foundations in Google Chrome on Chrome OS prior to 102.0.5005.61 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via specific user interactions.
CVE-2022-1861
- EPSS 0.74%
- Published 27.07.2022 22:15:08
- Last modified 21.11.2024 06:41:37
Use after free in Sharing in Google Chrome on Chrome OS prior to 102.0.5005.61 allowed a remote attacker who convinced a user to enage in specific user interactions to potentially exploit heap corruption via specific user interaction.
CVE-2022-1494
- EPSS 0.42%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Insufficient data validation in Trusted Types in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to bypass trusted types policy via a crafted HTML page.
CVE-2022-1495
- EPSS 0.33%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Incorrect security UI in Downloads in Google Chrome on Android prior to 101.0.4951.41 allowed a remote attacker to spoof the APK downloads dialog via a crafted HTML page.
CVE-2022-1496
- EPSS 0.71%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Use after free in File Manager in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit heap corruption via specific and direct user interaction.
CVE-2022-1497
- EPSS 0.09%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Inappropriate implementation in Input in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to spoof the contents of cross-origin websites via a crafted HTML page.
CVE-2022-1498
- EPSS 0.34%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Inappropriate implementation in HTML Parser in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
CVE-2022-1499
- EPSS 0.49%
- Published 26.07.2022 22:15:10
- Last modified 21.11.2024 06:40:50
Inappropriate implementation in WebAuthentication in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to bypass same origin policy via a crafted HTML page.