CVE-2021-21216
- EPSS 0.94%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:47
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2021-21217
- EPSS 0.57%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21218
- EPSS 0.6%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:47
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21219
- EPSS 0.6%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
CVE-2021-21220
- EPSS 90.02%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 05.02.2025 14:00:39
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2021-21221
- EPSS 1.21%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Insufficient validation of untrusted input in Mojo in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page.
CVE-2021-21222
- EPSS 0.39%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Heap buffer overflow in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
CVE-2021-21223
- EPSS 1.63%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Integer overflow in Mojo in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
CVE-2021-21224
- EPSS 54.38%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 05.02.2025 13:57:29
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
CVE-2021-21225
- EPSS 2.22%
- Veröffentlicht 26.04.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 05:47:48
Out of bounds memory access in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.