Google

Chrome

4139 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.14%
  • Veröffentlicht 05.01.2014 20:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Google Chrome before 21.0.1180.82 on iOS on iPad devices allows remote attackers to spoof the Omnibox URL via vectors involving SSL error messages, a related issue to CVE-2012-0674.

  • EPSS 0.12%
  • Veröffentlicht 05.01.2014 20:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Google Chrome before 21.0.1180.82 on iOS makes certain incorrect calls to WebView methods that trigger use of an applewebdata: URL, which allows remote attackers to bypass the Same Origin Policy and conduct Universal XSS (UXSS) attacks via vectors in...

  • EPSS 2.84%
  • Veröffentlicht 07.12.2013 00:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecifi...

  • EPSS 2.72%
  • Veröffentlicht 07.12.2013 00:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a denial of service (out-of-bounds read) via JavaScript code that se...

  • EPSS 1.31%
  • Veröffentlicht 07.12.2013 00:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The OneClickSigninHelper::ShowInfoBarIfPossible function in browser/ui/sync/one_click_signin_helper.cc in Google Chrome before 31.0.1650.63 uses an incorrect URL during realm validation, which allows remote attackers to conduct session fixation attac...

  • EPSS 1.16%
  • Veröffentlicht 07.12.2013 00:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in the editing implementation in Blink, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a denial of service or possibly have unspecified other impact via JavaScript code that triggers remova...

  • EPSS 0.73%
  • Veröffentlicht 07.12.2013 00:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The FrameLoader::notifyIfInitialDocumentAccessed function in core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 31.0.1650.63, makes an incorrect check for an empty document during presentation of a modal dialog, which allows remote...

  • EPSS 0.53%
  • Veröffentlicht 07.12.2013 00:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple unspecified vulnerabilities in Google Chrome before 31.0.1650.63 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

  • EPSS 4.07%
  • Veröffentlicht 07.12.2013 00:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple buffer overflows in runtime.cc in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a large typed ...

  • EPSS 0.22%
  • Veröffentlicht 19.11.2013 04:50:56
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of s...