Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
chrome vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2024-3157
Out of bounds memory access in Compositing in Google Chrome before 123.0.6312.122 allowed a remote attacker who had compromised the GPU process to potentially perform a sandbox escape via specific UI gestures. (Chromium security severity: High)
NA
CVE-2024-3156
Inappropriate implementation in V8 in Google Chrome before 123.0.6312.105 allowed a remote malicious user to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
1 Article
NA
CVE-2024-3158
Use after free in Bookmarks in Google Chrome before 123.0.6312.105 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
1 Article
NA
CVE-2024-3159
Out of bounds memory access in V8 in Google Chrome before 123.0.6312.105 allowed a remote malicious user to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
2 Articles
NA
CVE-2024-29891
ZITADEL users can upload their own avatar image and various image types are allowed. Due to a missing check, an attacker could upload HTML and pretend it is an image to gain access to the victim's account in certain scenarios. A possible victim would need to directly open th...
NA
CVE-2024-2883
Use after free in ANGLE in Google Chrome before 123.0.6312.86 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
NA
CVE-2024-2886
Use after free in WebCodecs in Google Chrome before 123.0.6312.86 allowed a remote malicious user to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
2 Articles
NA
CVE-2024-2885
Use after free in Dawn in Google Chrome before 123.0.6312.86 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
NA
CVE-2024-2887
Type Confusion in WebAssembly in Google Chrome before 123.0.6312.86 allowed a remote malicious user to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
2 Articles
NA
CVE-2023-23349
Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recover the auto-filled credentials from a memory dump when the KPM extension for Google Chrome is used. To exploit the issue, an attacker must trick a user into visi...
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
firmware
CVE-2006-4304
CVE-2024-32878
CVE-2024-31502
XSS
CVE-2024-3059
CVE-2024-33692
CVE-2024-3400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »