Show filters
3,649 Total Results
Displaying 111-120 of 3,649
Sort by:
Attacker Value
Unknown

CVE-2024-10229

Disclosure Date: October 22, 2024 (last updated October 26, 2024)
Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2024-9966

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Inappropriate implementation in Navigations in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2024-9965

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Insufficient data validation in DevTools in Google Chrome on Windows prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2024-9964

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Inappropriate implementation in Payments in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2024-9963

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-9962

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Inappropriate implementation in Permissions in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-9961

Disclosure Date: October 15, 2024 (last updated January 07, 2025)
Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-9960

Disclosure Date: October 15, 2024 (last updated January 07, 2025)
Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-9959

Disclosure Date: October 15, 2024 (last updated January 07, 2025)
Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-9958

Disclosure Date: October 15, 2024 (last updated October 18, 2024)
Inappropriate implementation in PictureInPicture in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)