Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alex vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2021-21135
Inappropriate implementation in Performance API in Google Chrome before 88.0.4324.96 allowed a remote malicious user to leak cross-origin data via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
6.5
CVSSv3
CVE-2021-21136
Insufficient policy enforcement in WebView in Google Chrome on Android before 88.0.4324.96 allowed a remote malicious user to leak cross-origin data via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
6.5
CVSSv3
CVE-2021-21137
Inappropriate implementation in DevTools in Google Chrome before 88.0.4324.96 allowed a remote malicious user to obtain potentially sensitive information from disk via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
8.6
CVSSv3
CVE-2021-21138
Use after free in DevTools in Google Chrome before 88.0.4324.96 allowed a local malicious user to potentially perform a sandbox escape via a crafted file.
Google Chrome
6.5
CVSSv3
CVE-2021-21139
Inappropriate implementation in iframe sandbox in Google Chrome before 88.0.4324.96 allowed a remote malicious user to bypass navigation restrictions via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
8.8
CVSSv3
CVE-2021-21119
Use after free in Media in Google Chrome before 88.0.4324.96 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
9.6
CVSSv3
CVE-2021-21124
Potential user after free in Speech Recognizer in Google Chrome on Android before 88.0.4324.96 allowed a remote malicious user to potentially perform a sandbox escape via a crafted HTML page.
Google Chrome
Microsoft Edge Chromium
8.8
CVSSv3
CVE-2021-21143
Heap buffer overflow in Extensions in Google Chrome before 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
Google Chrome
Fedoraproject Fedora 32
Fedoraproject Fedora 33
8.8
CVSSv3
CVE-2021-21144
Heap buffer overflow in Tab Groups in Google Chrome before 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
Google Chrome
Fedoraproject Fedora 32
Fedoraproject Fedora 33
9.6
CVSSv3
CVE-2021-21146
Use after free in Navigation in Google Chrome before 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
Google Chrome
Fedoraproject Fedora 32
Fedoraproject Fedora 33
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
XXE
CVE-2024-34490
SQL injection
CVE-2024-34488
CVE-2024-4507
CVE-2023-7028
CVE-2024-23187
TCP
CVE-2024-4439
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »