Latest CVE Feed
-
8.8
HIGHCVE-2021-21153
Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.... Read more
- EPSS Score: %0.97
- Published: Feb. 22, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-21152
Heap buffer overflow in Media in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.... Read more
- EPSS Score: %0.97
- Published: Feb. 22, 2021
- Modified: Nov. 21, 2024
-
9.6
CRITICALCVE-2021-21151
Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.... Read more
- EPSS Score: %0.73
- Published: Feb. 22, 2021
- Modified: Nov. 21, 2024
-
9.6
CRITICALCVE-2021-21150
Use after free in Downloads in Google Chrome on Windows prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.... Read more
- EPSS Score: %0.78
- Published: Feb. 22, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-21149
Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.... Read more
- EPSS Score: %0.86
- Published: Feb. 22, 2021
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2021-21147
Inappropriate implementation in Skia in Google Chrome prior to 88.0.4324.146 allowed a local attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.... Read more
- EPSS Score: %0.24
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
9.6
CRITICALCVE-2021-21146
Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.... Read more
- EPSS Score: %0.64
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-21145
Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.... Read more
- EPSS Score: %0.64
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-21144
Heap buffer overflow in Tab Groups in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.... Read more
- EPSS Score: %0.32
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-21143
Heap buffer overflow in Extensions in Google Chrome prior to 88.0.4324.146 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.... Read more
- EPSS Score: %0.35
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
9.6
CRITICALCVE-2021-21142
Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.... Read more
- EPSS Score: %0.61
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21141
Insufficient policy enforcement in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass file extension policy via a crafted HTML page.... Read more
- EPSS Score: %1.66
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2021-21140
Uninitialized use in USB in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform out of bounds memory access via via a USB device.... Read more
- EPSS Score: %0.17
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21139
Inappropriate implementation in iframe sandbox in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.... Read more
- EPSS Score: %1.53
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-21138
Use after free in DevTools in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform a sandbox escape via a crafted file.... Read more
Affected Products : chrome- EPSS Score: %0.14
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21137
Inappropriate implementation in DevTools in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to obtain potentially sensitive information from disk via a crafted HTML page.... Read more
- EPSS Score: %1.37
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21136
Insufficient policy enforcement in WebView in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page.... Read more
- EPSS Score: %8.89
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21135
Inappropriate implementation in Performance API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page.... Read more
- EPSS Score: %24.93
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21134
Incorrect security UI in Page Info in Google Chrome on iOS prior to 88.0.4324.96 allowed a remote attacker to spoof security UI via a crafted HTML page.... Read more
- EPSS Score: %15.32
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-21133
Insufficient policy enforcement in Downloads in Google Chrome prior to 88.0.4324.96 allowed an attacker who convinced a user to download files to bypass navigation restrictions via a crafted HTML page.... Read more
- EPSS Score: %3.99
- Published: Feb. 09, 2021
- Modified: Nov. 21, 2024