CVE-2023-0128
- EPSS 0.56%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:23
Use after free in Overview Mode in Google Chrome on Chrome OS prior to 109.0.5414.74 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium securi...
CVE-2023-0129
- EPSS 0.15%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 05.05.2025 16:15:23
Heap buffer overflow in Network Service in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page and specific interactions. (Chrom...
CVE-2023-0130
- EPSS 0.13%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 20.03.2025 21:15:15
Inappropriate implementation in in Fullscreen API in Google Chrome on Android prior to 109.0.5414.74 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-0131
- EPSS 0.05%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 20.03.2025 21:15:15
Inappropriate implementation in in iframe Sandbox in Google Chrome prior to 109.0.5414.74 allowed a remote attacker to bypass file download restrictions via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-0132
- EPSS 0.12%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 20.03.2025 21:15:16
Inappropriate implementation in in Permission prompts in Google Chrome on Windows prior to 109.0.5414.74 allowed a remote attacker to force acceptance of a permission prompt via a crafted HTML page. (Chromium security severity: Medium)
CVE-2023-0133
- EPSS 0.06%
- Veröffentlicht 10.01.2023 20:15:10
- Zuletzt bearbeitet 20.03.2025 21:15:16
Inappropriate implementation in in Permission prompts in Google Chrome on Android prior to 109.0.5414.74 allowed a remote attacker to bypass main origin permission delegation via a crafted HTML page. (Chromium security severity: Medium)
CVE-2019-13768
- EPSS 1.59%
- Veröffentlicht 02.01.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 04:25:41
Use after free in FileAPI in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chrome security severity: High)
CVE-2021-21200
- EPSS 0.4%
- Veröffentlicht 02.01.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 05:47:45
Out of bounds read in WebUI Settings in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chrome security severity: Low)
CVE-2021-30558
- EPSS 0.21%
- Veröffentlicht 02.01.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 06:04:10
Insufficient policy enforcement in content security policy in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chrome security severity: Medium)
CVE-2022-0337
- EPSS 11.73%
- Veröffentlicht 02.01.2023 23:15:10
- Zuletzt bearbeitet 21.11.2024 06:38:24
Inappropriate implementation in File System API in Google Chrome on Windows prior to 97.0.4692.71 allowed a remote attacker to obtain potentially sensitive information via a crafted HTML page. (Chrome security severity: High)