Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libxml2 vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2016-1705
Multiple unspecified vulnerabilities in Google Chrome prior to 52.0.2743.82 allow malicious users to cause a denial of service or possibly have other impact via unknown vectors.
Google Chrome
9.6
CVSSv3
CVE-2016-1706
The PPAPI implementation in Google Chrome prior to 52.0.2743.82 does not validate the origin of IPC messages to the plugin broker process that should have come from the browser process, which allows remote malicious users to bypass a sandbox protection mechanism via an unexpected...
Google Chrome
6.5
CVSSv3
CVE-2016-1707
ios/web/web_state/ui/crw_web_controller.mm in Google Chrome prior to 52.0.2743.82 on iOS does not ensure that an invalid URL is replaced with the about:blank URL, which allows remote malicious users to spoof the URL display via a crafted web site.
Google Chrome
8.8
CVSSv3
CVE-2016-1708
The Chrome Web Store inline-installation implementation in the Extensions subsystem in Google Chrome prior to 52.0.2743.82 does not properly consider object lifetimes during progress observation, which allows remote malicious users to cause a denial of service (use-after-free) or...
Google Chrome
8.8
CVSSv3
CVE-2016-1709
Heap-based buffer overflow in the ByteArray::Get method in data/byte_array.cc in Google sfntly prior to 2016-06-10, as used in Google Chrome prior to 52.0.2743.82, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via a crafted S...
Google Sfntly -
Google Chrome
8.8
CVSSv3
CVE-2016-1710
The ChromeClientImpl::createWindow method in WebKit/Source/web/ChromeClientImpl.cpp in Blink, as used in Google Chrome prior to 52.0.2743.82, does not prevent window creation by a deferred frame, which allows remote malicious users to bypass the Same Origin Policy via a crafted w...
Google Chrome
8.8
CVSSv3
CVE-2016-1711
WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome prior to 52.0.2743.82, does not disable frame navigation during a detach operation on a DocumentLoader object, which allows remote malicious users to bypass the Same Origin Policy via a crafted web site.
Google Chrome
9.8
CVSSv3
CVE-2016-4616
libxml2 in Apple iOS prior to 9.3.3, OS X prior to 10.11.6, iTunes prior to 12.4.2 on Windows, iCloud prior to 5.2.1 on Windows, tvOS prior to 9.2.2, and watchOS prior to 2.2.2 allows remote malicious users to cause a denial of service (memory corruption) or possibly have unspeci...
Apple Iphone Os
Apple Mac Os X
Apple Tvos
Apple Watchos
Apple Itunes
Apple Icloud
9.8
CVSSv3
CVE-2016-4614
libxml2 in Apple iOS prior to 9.3.3, OS X prior to 10.11.6, iTunes prior to 12.4.2 on Windows, iCloud prior to 5.2.1 on Windows, tvOS prior to 9.2.2, and watchOS prior to 2.2.2 allows remote malicious users to cause a denial of service (memory corruption) or possibly have unspeci...
Apple Icloud
Apple Itunes
Apple Iphone Os
Apple Mac Os X
Apple Tvos
Apple Watchos
9.8
CVSSv3
CVE-2016-4615
libxml2 in Apple iOS prior to 9.3.3, OS X prior to 10.11.6, iTunes prior to 12.4.2 on Windows, iCloud prior to 5.2.1 on Windows, tvOS prior to 9.2.2, and watchOS prior to 2.2.2 allows remote malicious users to cause a denial of service (memory corruption) or possibly have unspeci...
Apple Iphone Os
Apple Tvos
Apple Watchos
Apple Mac Os X
Apple Itunes
Apple Icloud
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »