Show filters
209 Total Results
Displaying 41-50 of 209
Sort by:
Attacker Value
Unknown
CVE-2024-38221
Disclosure Date: September 19, 2024 (last updated September 24, 2024)
Microsoft Edge (Chromium-based) Spoofing Vulnerability
0
Attacker Value
Unknown
CVE-2024-38207
Disclosure Date: August 23, 2024 (last updated August 28, 2024)
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
0
Attacker Value
Unknown
CVE-2024-38210
Disclosure Date: August 22, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-38209
Disclosure Date: August 22, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-7965
Disclosure Date: August 21, 2024 (last updated September 19, 2024)
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
0
Attacker Value
Unknown
CVE-2024-43472
Disclosure Date: August 16, 2024 (last updated August 29, 2024)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2024-38219
Disclosure Date: August 12, 2024 (last updated August 30, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-38218
Disclosure Date: August 12, 2024 (last updated January 09, 2025)
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
0
Attacker Value
Unknown
CVE-2024-21527
Disclosure Date: July 19, 2024 (last updated July 19, 2024)
Versions of the package github.com/gotenberg/gotenberg/v8/pkg/gotenberg before 8.1.0; versions of the package github.com/gotenberg/gotenberg/v8/pkg/modules/chromium before 8.1.0; versions of the package github.com/gotenberg/gotenberg/v8/pkg/modules/webhook before 8.1.0 are vulnerable to Server-side Request Forgery (SSRF) via the /convert/html endpoint when a request is made to a file via localhost, such as <iframe src="\\localhost/etc/passwd">. By exploiting this vulnerability, an attacker can achieve local file inclusion, allowing of sensitive files read on the host system.
Workaround
An alternative is using either or both --chromium-deny-list and --chromium-allow-list flags.
0
Attacker Value
Unknown
CVE-2024-38083
Disclosure Date: June 13, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Spoofing Vulnerability
0