Google

Chrome

3758 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.63%
  • Veröffentlicht 11.09.2016 10:59:23
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The download implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly restrict saving a file:// URL that is referenced by an http:// URL, which makes it easier for user-assisted remote...

  • EPSS 0.5%
  • Veröffentlicht 11.09.2016 10:59:22
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attackers to inject arbitrary web script or HTML via the ...

  • EPSS 0.49%
  • Veröffentlicht 11.09.2016 10:59:20
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Cross-site scripting (XSS) vulnerability in WebKit/Source/platform/v8_inspector/V8Debugger.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allows remote attackers to inject arbitrary we...

  • EPSS 1.46%
  • Veröffentlicht 11.09.2016 10:59:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The bidirectional-text implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not ensure left-to-right (LTR) rendering of URLs, which allows remote attackers to spoof the address bar via crafted ...

  • EPSS 0.68%
  • Veröffentlicht 11.09.2016 10:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use an extension's manifest.json web_accessible_resource...

  • EPSS 1.83%
  • Veröffentlicht 11.09.2016 10:59:17
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The EditingStyle::mergeStyle function in WebKit/Source/core/editing/EditingStyle.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, mishandles custom properties, which allows remote attack...

  • EPSS 0.68%
  • Veröffentlicht 11.09.2016 10:59:16
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use an extension's manifest.json web_accessible_resource...

  • EPSS 1.26%
  • Veröffentlicht 11.09.2016 10:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer overflows in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have uns...

  • EPSS 0.75%
  • Veröffentlicht 11.09.2016 10:59:14
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer overflows in the opj_tcd_init_tile function in tcd.c in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a denial of service (heap-...

  • EPSS 6.59%
  • Veröffentlicht 11.09.2016 10:59:13
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the opj_dwt_interleave_v function in dwt.c in OpenJPEG, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allows remote attackers to execute arbitrary code via c...