Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libxml2 vulnerabilities and exploits
(subscribe to this query)
605
VMScore
CVE-2016-5127
Use-after-free vulnerability in WebKit/Source/core/editing/VisibleUnits.cpp in Blink, as used in Google Chrome prior to 52.0.2743.82, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code involving an @imp...
Google Chrome
605
VMScore
CVE-2016-5128
objects.cc in Google V8 prior to 5.2.361.27, as used in Google Chrome prior to 52.0.2743.82, does not prevent API interceptors from modifying a store target without setting a property, which allows remote malicious users to bypass the Same Origin Policy via a crafted web site.
Google Chrome
Google V8 5.2.360
606
VMScore
CVE-2016-5129
Google V8 prior to 5.2.361.32, as used in Google Chrome prior to 52.0.2743.82, does not properly process left-trimmed objects, which allows remote malicious users to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted JavaScript cod...
Google Chrome 51.0.2704.106
Google V8
383
VMScore
CVE-2016-5130
content/renderer/history_controller.cc in Google Chrome prior to 52.0.2743.82 does not properly restrict multiple uses of a JavaScript forward method, which allows remote malicious users to spoof the URL display via a crafted web site.
Google Chrome
605
VMScore
CVE-2016-5131
Use-after-free vulnerability in libxml2 up to and including 2.9.4, as used in Google Chrome prior to 52.0.2743.82, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors related to the XPointer range-to function.
Google Chrome
Xmlsoft Libxml2
Apple Watchos
Apple Tvos
Apple Iphone Os
Apple Mac Os X
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 14.04
Redhat Enterprise Linux Desktop 6.0
Redhat Enterprise Linux Server 6.0
Redhat Enterprise Linux Workstation 6.0
Suse Linux Enterprise 12.0
Opensuse Leap 42.1
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Debian Debian Linux 8.0
Debian Debian Linux 9.0
605
VMScore
CVE-2016-5132
The Service Workers subsystem in Google Chrome prior to 52.0.2743.82 does not properly implement the Secure Contexts specification during decisions about whether to control a subframe, which allows remote malicious users to bypass the Same Origin Policy via an https IFRAME elemen...
Google Chrome
383
VMScore
CVE-2016-5133
Google Chrome prior to 52.0.2743.82 mishandles origin information during proxy authentication, which allows man-in-the-middle malicious users to spoof a proxy-authentication login prompt or trigger incorrect credential storage by modifying the client-server data stream.
Google Chrome
605
VMScore
CVE-2016-5136
Use-after-free vulnerability in extensions/renderer/user_script_injector.cc in the Extensions subsystem in Google Chrome prior to 52.0.2743.82 allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors related to script deleti...
Google Chrome
383
VMScore
CVE-2016-5137
The CSPSource::schemeMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) implementation in Blink, as used in Google Chrome prior to 52.0.2743.82, does not apply http :80 policies to https :443 URLs and does not apply ws :80 policies...
Google Chrome
605
VMScore
CVE-2016-1708
The Chrome Web Store inline-installation implementation in the Extensions subsystem in Google Chrome prior to 52.0.2743.82 does not properly consider object lifetimes during progress observation, which allows remote malicious users to cause a denial of service (use-after-free) or...
Google Chrome
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »