CVE-2023-2930
https://notcve.org/view.php?id=CVE-2023-2930
30 May 2023 — Use after free in Extensions in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_30.html • CWE-416: Use After Free •
CVE-2023-2929
https://notcve.org/view.php?id=CVE-2023-2929
30 May 2023 — Out of bounds write in Swiftshader in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_30.html • CWE-787: Out-of-bounds Write •
CVE-2023-2726
https://notcve.org/view.php?id=CVE-2023-2726
16 May 2023 — Inappropriate implementation in WebApp Installs in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to install a malicious web app to bypass install dialog via a crafted HTML page. (Chromium security severity: Medium) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html •
CVE-2023-2725
https://notcve.org/view.php?id=CVE-2023-2725
16 May 2023 — Use after free in Guest View in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html • CWE-416: Use After Free •
CVE-2023-2724 – Chrome Internal JavaScript Object Access Via Origin Trials
https://notcve.org/view.php?id=CVE-2023-2724
16 May 2023 — Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) Chrome suffers from an internal javascript object access vulnerability. suffers from a code execution vulnerability. • http://packetstormsecurity.com/files/173131/Chrome-Internal-JavaScript-Object-Access-Via-Origin-Trials.html • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •
CVE-2023-2723
https://notcve.org/view.php?id=CVE-2023-2723
16 May 2023 — Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html • CWE-416: Use After Free •
CVE-2023-2722
https://notcve.org/view.php?id=CVE-2023-2722
16 May 2023 — Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html • CWE-416: Use After Free •
CVE-2023-2721
https://notcve.org/view.php?id=CVE-2023-2721
16 May 2023 — Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop_16.html • CWE-416: Use After Free •
CVE-2023-2458
https://notcve.org/view.php?id=CVE-2023-2458
12 May 2023 — Use after free in ChromeOS Camera in Google Chrome on ChromeOS prior to 113.0.5672.114 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via UI interaction. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-chromeos.html • CWE-416: Use After Free •
CVE-2023-2457
https://notcve.org/view.php?id=CVE-2023-2457
12 May 2023 — Out of bounds write in ChromeOS Audio Server in Google Chrome on ChromeOS prior to 113.0.5672.114 allowed a remote attacker to potentially exploit heap corruption via crafted audio file. (Chromium security severity: High) • https://chromereleases.googleblog.com/2023/05/stable-channel-update-for-chromeos.html • CWE-787: Out-of-bounds Write •