CVE-2025-2783
- EPSS 39.48%
- Veröffentlicht 26.03.2025 16:15:23
- Zuletzt bearbeitet 24.10.2025 14:06:49
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remote attacker to perform a sandbox escape via a malicious file. (Chromium security severity: High)
CVE-2025-2476
- EPSS 16.42%
- Veröffentlicht 19.03.2025 18:59:42
- Zuletzt bearbeitet 01.04.2025 20:37:56
Use after free in Lens in Google Chrome prior to 134.0.6998.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
CVE-2025-2135
- EPSS 0.2%
- Veröffentlicht 10.03.2025 20:39:17
- Zuletzt bearbeitet 07.04.2025 18:54:36
Type Confusion in V8 in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-2136
- EPSS 0.21%
- Veröffentlicht 10.03.2025 20:39:17
- Zuletzt bearbeitet 07.04.2025 18:54:29
Use after free in Inspector in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2025-2137
- EPSS 0.1%
- Veröffentlicht 10.03.2025 20:39:17
- Zuletzt bearbeitet 07.04.2025 18:54:11
Out of bounds read in V8 in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
CVE-2025-1920
- EPSS 0.15%
- Veröffentlicht 10.03.2025 20:39:16
- Zuletzt bearbeitet 07.04.2025 18:54:46
Type Confusion in V8 in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
CVE-2025-1923
- EPSS 0.08%
- Veröffentlicht 05.03.2025 04:15:12
- Zuletzt bearbeitet 01.04.2025 20:41:40
Inappropriate implementation in Permission Prompts in Google Chrome prior to 134.0.6998.35 allowed an attacker who convinced a user to install a malicious extension to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: L...
CVE-2025-1915
- EPSS 0.09%
- Veröffentlicht 05.03.2025 04:15:11
- Zuletzt bearbeitet 01.04.2025 20:42:45
Improper Limitation of a Pathname to a Restricted Directory in DevTools in Google Chrome on Windows prior to 134.0.6998.35 allowed an attacker who convinced a user to install a malicious extension to bypass file access restrictions via a crafted Chro...
CVE-2025-1916
- EPSS 0.17%
- Veröffentlicht 05.03.2025 04:15:11
- Zuletzt bearbeitet 01.04.2025 20:42:36
Use after free in Profiles in Google Chrome prior to 134.0.6998.35 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
CVE-2025-1917
- EPSS 0.09%
- Veröffentlicht 05.03.2025 04:15:11
- Zuletzt bearbeitet 01.04.2025 20:42:28
Inappropriate implementation in Browser UI in Google Chrome on Android prior to 134.0.6998.35 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)