Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alex vulnerabilities and exploits
(subscribe to this query)
9.6
CVSSv3
CVE-2021-21121
Use after free in Omnibox in Google Chrome on Linux before 88.0.4324.96 allowed a remote malicious user to potentially perform a sandbox escape via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
8.8
CVSSv3
CVE-2021-21122
Use after free in Blink in Google Chrome before 88.0.4324.96 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
6.5
CVSSv3
CVE-2021-21123
Insufficient data validation in File System API in Google Chrome before 88.0.4324.96 allowed a remote malicious user to bypass filesystem restrictions via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
8.1
CVSSv3
CVE-2021-21125
Insufficient policy enforcement in File System API in Google Chrome on Windows before 88.0.4324.96 allowed a remote malicious user to bypass filesystem restrictions via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
4.3
CVSSv3
CVE-2021-21147
Inappropriate implementation in Skia in Google Chrome before 88.0.4324.146 allowed a local malicious user to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Google Chrome
Fedoraproject Fedora 32
Fedoraproject Fedora 33
7.8
CVSSv3
CVE-2021-21117
Insufficient policy enforcement in Cryptohome in Google Chrome before 88.0.4324.96 allowed a local malicious user to perform OS-level privilege escalation via a crafted file.
Google Chrome
8.8
CVSSv3
CVE-2021-21118
Insufficient data validation in V8 in Google Chrome before 88.0.4324.96 allowed a remote malicious user to potentially perform out of bounds memory access via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
6.5
CVSSv3
CVE-2021-21126
Insufficient policy enforcement in extensions in Google Chrome before 88.0.4324.96 allowed a remote malicious user to bypass site isolation via a crafted Chrome Extension.
Google Chrome
Microsoft Edge Chromium
8.8
CVSSv3
CVE-2021-21127
Insufficient policy enforcement in extensions in Google Chrome before 88.0.4324.96 allowed a remote malicious user to bypass content security policy via a crafted Chrome Extension.
Google Chrome
Microsoft Edge Chromium
8.8
CVSSv3
CVE-2021-21128
Heap buffer overflow in Blink in Google Chrome before 88.0.4324.96 allowed a remote malicious user to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »