CVE-2025-8577
- EPSS 0.05%
- Veröffentlicht 07.08.2025 01:30:38
- Zuletzt bearbeitet 08.08.2025 18:24:45
Inappropriate implementation in Picture In Picture in Google Chrome prior to 139.0.7258.66 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: M...
CVE-2025-8578
- EPSS 0.2%
- Veröffentlicht 07.08.2025 01:30:38
- Zuletzt bearbeitet 13.11.2025 18:43:36
Use after free in Cast in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2025-8292
- EPSS 0.1%
- Veröffentlicht 30.07.2025 01:18:27
- Zuletzt bearbeitet 01.08.2025 14:37:02
Use after free in Media Stream in Google Chrome prior to 138.0.7204.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-8010
- EPSS 0.08%
- Veröffentlicht 22.07.2025 21:11:18
- Zuletzt bearbeitet 26.09.2025 17:33:32
Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-8011
- EPSS 0.07%
- Veröffentlicht 22.07.2025 21:11:18
- Zuletzt bearbeitet 26.09.2025 17:33:44
Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-6558
- EPSS 0.16%
- Veröffentlicht 15.07.2025 18:15:24
- Zuletzt bearbeitet 06.11.2025 14:52:01
Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CVE-2025-7656
- EPSS 0.07%
- Veröffentlicht 15.07.2025 18:15:24
- Zuletzt bearbeitet 16.07.2025 14:28:06
Integer overflow in V8 in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-7657
- EPSS 0.04%
- Veröffentlicht 15.07.2025 18:15:24
- Zuletzt bearbeitet 16.07.2025 14:27:43
Use after free in WebRTC in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-6554
- EPSS 0.94%
- Veröffentlicht 30.06.2025 21:14:14
- Zuletzt bearbeitet 24.10.2025 14:11:20
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
CVE-2025-6555
- EPSS 0.05%
- Veröffentlicht 24.06.2025 20:03:31
- Zuletzt bearbeitet 02.07.2025 17:15:52
Use after free in Animation in Google Chrome prior to 138.0.7204.49 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)