Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google chrome os vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2010-4575
The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_delegate.cc in Google Chrome prior to 8.0.552.224 and Chrome OS prior to 8.0.552.343 does not properly handle incorrect tab interaction by an extension, which allows user-assisted re...
Google Chrome Os
Google Chrome
NA
CVE-2010-4576
browser/worker_host/message_port_dispatcher.cc in Google Chrome prior to 8.0.552.224 and Chrome OS prior to 8.0.552.343 does not properly handle certain postMessage calls, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application c...
Google Chrome Os
Google Chrome
NA
CVE-2012-2824
Use-after-free vulnerability in Google Chrome prior to 20.0.1132.43 allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors related to SVG painting.
Google Chrome 20.0.1132.37
Google Chrome 20.0.1132.16
Google Chrome 20.0.1132.14
Google Chrome 20.0.1132.22
Google Chrome 20.0.1132.30
Google Chrome 20.0.1132.26
Google Chrome 20.0.1132.2
Google Chrome 20.0.1132.11
Google Chrome 20.0.1132.3
Google Chrome 20.0.1132.25
Google Chrome 20.0.1132.24
Google Chrome 20.0.1132.41
Google Chrome 20.0.1132.32
Google Chrome 20.0.1132.38
Google Chrome 20.0.1132.31
Google Chrome 20.0.1132.8
Google Chrome 20.0.1132.4
Google Chrome 20.0.1132.17
Google Chrome 20.0.1132.7
Google Chrome 20.0.1132.18
Google Chrome 20.0.1132.0
Google Chrome
NA
CVE-2012-5134
Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and previous versions, as used in Google Chrome prior to 23.0.1271.91 and other products, allows remote malicious users to cause a denial of service or possibly execute arbitrary code...
Google Chrome 23.0.1271.87
Google Chrome 23.0.1271.58
Xmlsoft Libxml2 2.2.0
Xmlsoft Libxml2 2.2.2
Google Chrome 23.0.1271.19
Google Chrome 23.0.1271.51
Xmlsoft Libxml2 2.4.30
Xmlsoft Libxml2 2.6.16
Xmlsoft Libxml2 1.8.0
Xmlsoft Libxml2 1.8.16
Xmlsoft Libxml2 2.6.32
Xmlsoft Libxml2 2.1.0
Xmlsoft Libxml2 2.4.19
Xmlsoft Libxml2 2.4.7
Xmlsoft Libxml2 2.4.17
Xmlsoft Libxml2 2.2.9
Google Chrome 23.0.1271.45
Google Chrome 23.0.1271.18
Xmlsoft Libxml2 2.3.6
Xmlsoft Libxml2 2.6.26
Google Chrome 23.0.1271.17
Xmlsoft Libxml2 2.6.11
1 Github repository
NA
CVE-2012-2889
Cross-site scripting (XSS) vulnerability in Google Chrome prior to 22.0.1229.79 allows remote malicious users to inject arbitrary web script or HTML via vectors involving frames, aka "Universal XSS (UXSS)."
Google Chrome 22.0.1229.23
Google Chrome 22.0.1229.63
Google Chrome 22.0.1229.18
Google Chrome 22.0.1229.33
Google Chrome 22.0.1229.9
Google Chrome 22.0.1229.57
Google Chrome 22.0.1229.32
Google Chrome 22.0.1229.54
Google Chrome 22.0.1229.16
Google Chrome 22.0.1229.4
Google Chrome 22.0.1229.21
Google Chrome 22.0.1229.12
Google Chrome 22.0.1229.31
Google Chrome 22.0.1229.10
Google Chrome 22.0.1229.2
Google Chrome 22.0.1229.22
Google Chrome 22.0.1229.35
Google Chrome 22.0.1229.50
Google Chrome 22.0.1229.36
Google Chrome 22.0.1229.60
Google Chrome 22.0.1229.62
Google Chrome 22.0.1229.25
8.8
CVSSv3
CVE-2022-3051
Heap buffer overflow in Exosphere in Google Chrome on Chrome OS, Lacros before 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via crafted UI interactions.
Google Chrome
Google Linux And Chrome Os -
Fedoraproject Fedora 37
8.8
CVSSv3
CVE-2022-3052
Heap buffer overflow in Window Manager in Google Chrome on Chrome OS, Lacros before 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via crafted UI interactions.
Google Chrome
Google Linux And Chrome Os -
Fedoraproject Fedora 37
1 Article
NA
CVE-2013-2926
Use-after-free vulnerability in the IndentOutdentCommand::tryIndentingAsListItem function in core/editing/IndentOutdentCommand.cpp in Blink, as used in Google Chrome prior to 30.0.1599.101, allows user-assisted remote malicious users to cause a denial of service or possibly have ...
Google Chrome 30.0.1599.66
Google Chrome 30.0.1599.6
Google Chrome
Google Chrome 30.0.1599.80
Google Chrome 30.0.1599.88
Google Chrome 30.0.1599.28
Google Chrome 30.0.1599.14
Google Chrome 30.0.1599.0
Google Chrome 30.0.1599.7
Google Chrome 30.0.1599.38
Google Chrome 30.0.1599.67
Google Chrome 30.0.1599.31
Google Chrome 30.0.1599.15
Google Chrome 30.0.1599.9
Google Chrome 30.0.1599.42
Google Chrome 30.0.1599.1
Google Chrome 30.0.1599.4
Google Chrome 30.0.1599.34
Google Chrome 30.0.1599.65
Google Chrome 30.0.1599.51
Google Chrome 30.0.1599.18
Google Chrome 30.0.1599.50
1 Article
9.8
CVSSv3
CVE-2016-5179
Chrome OS prior to 53.0.2785.144 allows remote malicious users to execute arbitrary commands at boot.
Google Chrome Os
8.8
CVSSv3
CVE-2016-5169
Format string vulnerability in Google Chrome OS prior to 53.0.2785.103 allows remote malicious users to cause a denial of service or possibly have unspecified other impact via unknown vectors.
Google Chrome Os
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »