Show filters
768 Total Results
Displaying 31-40 of 768
Sort by:
Attacker Value
Unknown

CVE-2019-11556

Disclosure Date: September 25, 2020 (last updated February 22, 2025)
Pagure before 5.6 allows XSS via the templates/blame.html blame view.
Attacker Value
Unknown

CVE-2020-6563

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Insufficient policy enforcement in intent handling in Google Chrome on Android prior to 85.0.4183.83 allowed a remote attacker to obtain potentially sensitive information from disk via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6575

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Race in Mojo in Google Chrome prior to 85.0.4183.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6561

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Inappropriate implementation in Content Security Policy in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6558

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Insufficient policy enforcement in iOSWeb in Google Chrome on iOS prior to 85.0.4183.83 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6569

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Integer overflow in WebUSB in Google Chrome prior to 85.0.4183.83 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6565

Disclosure Date: September 21, 2020 (last updated November 08, 2023)
Inappropriate implementation in Omnibox in Google Chrome on iOS prior to 85.0.4183.83 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6559

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6562

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Insufficient policy enforcement in Blink in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-15960

Disclosure Date: September 21, 2020 (last updated February 22, 2025)
Heap buffer overflow in storage in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.