CVE-2023-2937
- EPSS 0.16%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 11.03.2025 18:15:29
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security s...
CVE-2023-2938
- EPSS 0.16%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 18.03.2025 19:15:41
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security s...
CVE-2023-2939
- EPSS 0.02%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:38
Insufficient data validation in Installer in Google Chrome on Windows prior to 114.0.5735.90 allowed a local attacker to perform privilege escalation via crafted symbolic link. (Chromium security severity: Medium)
CVE-2023-2940
- EPSS 0.03%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 12.03.2025 18:15:25
Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to bypass file access restrictions via a crafted HTML page. (Chromium security severity: Mediu...
CVE-2023-2941
- EPSS 0.1%
- Veröffentlicht 30.05.2023 22:15:10
- Zuletzt bearbeitet 11.03.2025 17:15:47
Inappropriate implementation in Extensions API in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to spoof the contents of the UI via a crafted Chrome Extension. (Chromium security severi...
CVE-2023-2929
- EPSS 0.6%
- Veröffentlicht 30.05.2023 22:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:37
Out of bounds write in Swiftshader in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2721
- EPSS 0.23%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2023-2722
- EPSS 0.26%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:35
Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2723
- EPSS 11.8%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2023-2724
- EPSS 15.22%
- Veröffentlicht 16.05.2023 19:15:09
- Zuletzt bearbeitet 05.05.2025 16:15:36
Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)