CVE-2024-12053
- EPSS 0.19%
- Veröffentlicht 03.12.2024 19:15:08
- Zuletzt bearbeitet 02.01.2025 17:47:20
Type Confusion in V8 in Google Chrome prior to 131.0.6778.108 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-7025
- EPSS 0.31%
- Veröffentlicht 27.11.2024 18:15:18
- Zuletzt bearbeitet 02.01.2025 17:56:31
Integer overflow in Layout in Google Chrome prior to 129.0.6668.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-9369
- EPSS 0.24%
- Veröffentlicht 27.11.2024 18:15:18
- Zuletzt bearbeitet 02.01.2025 17:55:20
Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
CVE-2024-11395
- EPSS 0.44%
- Veröffentlicht 19.11.2024 20:15:29
- Zuletzt bearbeitet 29.07.2025 18:53:11
Type Confusion in V8 in Google Chrome prior to 131.0.6778.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2024-11111
- EPSS 0.06%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 18:21:25
Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-11112
- EPSS 0.25%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 18:02:40
Use after free in Media in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-11113
- EPSS 0.34%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 18:02:23
Use after free in Accessibility in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-11114
- EPSS 0.19%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 18:02:03
Inappropriate implementation in Views in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: ...
CVE-2024-11115
- EPSS 0.22%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 18:00:46
Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker to perform privilege escalation via a series of UI gestures. (Chromium security severity: Medium)
CVE-2024-11116
- EPSS 0.06%
- Veröffentlicht 12.11.2024 21:15:11
- Zuletzt bearbeitet 02.01.2025 17:58:57
Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)