Show filters
209 Total Results
Displaying 41-50 of 209
Sort by:
Attacker Value
Unknown

CVE-2024-38221

Disclosure Date: September 19, 2024 (last updated September 24, 2024)
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Attacker Value
Unknown

CVE-2024-38207

Disclosure Date: August 23, 2024 (last updated August 28, 2024)
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
Attacker Value
Unknown

CVE-2024-38210

Disclosure Date: August 22, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-38209

Disclosure Date: August 22, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-7965

Disclosure Date: August 21, 2024 (last updated September 19, 2024)
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2024-43472

Disclosure Date: August 16, 2024 (last updated August 29, 2024)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2024-38219

Disclosure Date: August 12, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-38218

Disclosure Date: August 12, 2024 (last updated January 09, 2025)
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
Attacker Value
Unknown

CVE-2024-21527

Disclosure Date: July 19, 2024 (last updated July 19, 2024)
Versions of the package github.com/gotenberg/gotenberg/v8/pkg/gotenberg before 8.1.0; versions of the package github.com/gotenberg/gotenberg/v8/pkg/modules/chromium before 8.1.0; versions of the package github.com/gotenberg/gotenberg/v8/pkg/modules/webhook before 8.1.0 are vulnerable to Server-side Request Forgery (SSRF) via the /convert/html endpoint when a request is made to a file via localhost, such as <iframe src="\\localhost/etc/passwd">. By exploiting this vulnerability, an attacker can achieve local file inclusion, allowing of sensitive files read on the host system. Workaround An alternative is using either or both --chromium-deny-list and --chromium-allow-list flags.
0
Attacker Value
Unknown

CVE-2024-38083

Disclosure Date: June 13, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Spoofing Vulnerability