CVE-2024-9955
- EPSS 21.39%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 02.01.2025 16:01:37
Use after free in WebAuthentication in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9956
- EPSS 0.03%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 20.03.2025 22:15:14
Inappropriate implementation in WebAuthentication in Google Chrome on Android prior to 130.0.6723.58 allowed a local attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9957
- EPSS 0.15%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 02.01.2025 16:02:27
Use after free in UI in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9958
- EPSS 0.08%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 25.03.2025 17:16:16
Inappropriate implementation in PictureInPicture in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9959
- EPSS 0.24%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 02.01.2025 16:02:49
Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)
CVE-2024-9960
- EPSS 0.1%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 02.01.2025 18:12:58
Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9961
- EPSS 0.15%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 02.01.2025 18:12:02
Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severi...
CVE-2024-9962
- EPSS 0.07%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 25.03.2025 17:16:17
Inappropriate implementation in Permissions in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9963
- EPSS 0.1%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 25.03.2025 17:16:18
Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
CVE-2024-9964
- EPSS 0.1%
- Veröffentlicht 15.10.2024 21:15:12
- Zuletzt bearbeitet 25.03.2025 17:16:18
Inappropriate implementation in Payments in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)