CVE-2025-5063
- EPSS 3.12%
- Veröffentlicht 27.05.2025 20:43:02
- Zuletzt bearbeitet 02.07.2025 14:15:26
Use after free in Compositing in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-4664
- EPSS 5.63%
- Veröffentlicht 14.05.2025 17:41:06
- Zuletzt bearbeitet 06.06.2025 01:00:02
Insufficient policy enforcement in Loader in Google Chrome prior to 136.0.7103.113 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
CVE-2025-4372
- EPSS 0.47%
- Veröffentlicht 06.05.2025 21:35:44
- Zuletzt bearbeitet 28.05.2025 20:00:04
Use after free in WebAudio in Google Chrome prior to 136.0.7103.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2025-4051
- EPSS 0.29%
- Veröffentlicht 05.05.2025 18:15:44
- Zuletzt bearbeitet 28.05.2025 20:08:14
Insufficient data validation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass discretionary access control via a crafted HTML page. (Chromium security sever...
CVE-2025-4052
- EPSS 0.58%
- Veröffentlicht 05.05.2025 18:15:44
- Zuletzt bearbeitet 28.05.2025 20:07:45
Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass discretionary access control via a crafted HTML page. (Chromium security sever...
CVE-2025-4096
- EPSS 0.47%
- Veröffentlicht 05.05.2025 18:15:44
- Zuletzt bearbeitet 28.05.2025 20:07:18
Heap buffer overflow in HTML in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-4050
- EPSS 0.46%
- Veröffentlicht 05.05.2025 18:15:43
- Zuletzt bearbeitet 28.05.2025 20:08:51
Out of bounds memory access in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severi...
CVE-2025-3620
- EPSS 0.32%
- Veröffentlicht 16.04.2025 20:57:45
- Zuletzt bearbeitet 23.04.2025 18:11:43
Use after free in USB in Google Chrome prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-3619
- EPSS 0.51%
- Veröffentlicht 16.04.2025 20:57:44
- Zuletzt bearbeitet 15.07.2025 18:20:55
Heap buffer overflow in Codecs in Google Chrome on Windows prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2025-3067
- EPSS 0.8%
- Veröffentlicht 02.04.2025 01:15:38
- Zuletzt bearbeitet 08.09.2025 00:15:30
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 135.0.7049.52 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform privilege escalation via a crafted app. (Chromium security seve...