Page 2 of 48 results (0.011 seconds)

CVSS: 10.0EPSS: 93%CPEs: 16EXPL: 16

12 Sep 2023 — Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical) El desbordamiento del búfer de memoria en libwebp en Google Chrome anterior a 116.0.5845.187 y libwebp 1.3.2 permitía a un atacante remoto realizar una escritura en memoria fuera de los límites a través de una página HTML manipulada. (Severidad de seguridad de Chromium: crítica) A heap-bas... • https://github.com/alsaeroth/CVE-2023-4863-POC • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

14 Jul 2023 — Microsoft Edge for iOS Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36883 • CWE-290: Authentication Bypass by Spoofing •

CVSS: 6.4EPSS: 1%CPEs: 1EXPL: 0

11 Apr 2023 — Microsoft Edge (Chromium-based) Tampering Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28301 • CWE-20: Improper Input Validation •

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

11 Apr 2023 — Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28284 • CWE-693: Protection Mechanism Failure •

CVSS: 8.3EPSS: 0%CPEs: 2EXPL: 0

13 Dec 2022 — Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en Microsoft Edge (basado en Chromium). Multiple vulnerabilities have been discovered in QtWebEngine, the worst of which could lead to remote code execution. Versions greater than or equal to 5.15.10_p20230623 are affected. • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-44708 •

CVSS: 10.0EPSS: 0%CPEs: 3EXPL: 1

25 Nov 2022 — Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) El desbordamiento del búfer de montón en GPU en Google Chrome anterior a 107.0.5304.121 permitió a un atacante remoto que había comprometido el proceso de renderizado realizar potencialmente un escape de la zona de pruebas a través de una página HTML manipulada. (Severidad de... • https://chromereleases.googleblog.com/2022/11/stable-channel-update-for-desktop_24.html • CWE-787: Out-of-bounds Write •

CVSS: 4.3EPSS: 0%CPEs: 2EXPL: 0

25 Jan 2022 — Microsoft Edge for Android Spoofing Vulnerability Una Vulnerabilidad de Suplantación de identidad en Microsoft Edge para Android • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-23258 •

CVSS: 8.8EPSS: 0%CPEs: 2EXPL: 0

15 Sep 2021 — Microsoft Edge (Chromium-based) Tampering Vulnerability Una vulnerabilidad de Manipulación de Microsoft Edge (basado en Chromium) • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-38669 •

CVSS: 8.8EPSS: 0%CPEs: 3EXPL: 0

03 Sep 2021 — Chromium: CVE-2021-30624 Use after free in Autofill Chromium: CVE-2021-30624 uso de la memoria previamente liberada en Autofill • https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IPJPUSAWIJMQFBQQQYXAICLI4EKFQOH6 • CWE-416: Use After Free •

CVSS: 8.8EPSS: 0%CPEs: 3EXPL: 0

03 Sep 2021 — Chromium: CVE-2021-30623 Use after free in Bookmarks Chromium: CVE-2021-30623 Uso de la memoria previamente liberada en Bookmarks • https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IPJPUSAWIJMQFBQQQYXAICLI4EKFQOH6 • CWE-416: Use After Free •