CVE-2018-6095
- EPSS 0.94%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:03
Inappropriate dismissal of file picker on keyboard events in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to read local files via a crafted HTML page.
CVE-2018-6098
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:03
Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2018-6099
- EPSS 0.94%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:03
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
CVE-2018-6101
- EPSS 2.03%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
A lack of host validation in DevTools in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute arbitrary code via a crafted HTML page, if the user is running a remote DevTools debugging server.
CVE-2018-6102
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
Missing confusable characters in Internationalization in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name.
CVE-2018-6103
- EPSS 0.63%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
A stagnant permission prompt in Prompts in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to bypass permission policy via a crafted HTML page.
CVE-2018-6104
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2018-6105
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
Incorrect handling of confusable characters in Omnibox in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2018-6107
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:04
Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2018-6108
- EPSS 0.91%
- Veröffentlicht 04.12.2018 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:05
Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted HTML page.