Show filters
936 Total Results
Displaying 71-80 of 936
Sort by:
Attacker Value
Unknown

CVE-2023-6348

Disclosure Date: November 29, 2023 (last updated December 06, 2023)
Type Confusion in Spellcheck in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-6347

Disclosure Date: November 29, 2023 (last updated December 02, 2023)
Use after free in Mojo in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-6346

Disclosure Date: November 29, 2023 (last updated December 02, 2023)
Use after free in WebAudio in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-6112

Disclosure Date: November 15, 2023 (last updated January 27, 2024)
Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-5997

Disclosure Date: November 15, 2023 (last updated January 27, 2024)
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-5996

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-47272

Disclosure Date: November 06, 2023 (last updated December 29, 2023)
Roundcube 1.5.x before 1.5.6 and 1.6.x before 1.6.5 allows XSS via a Content-Type or Content-Disposition header (used for attachment preview or download).
Attacker Value
Unknown

CVE-2023-5859

Disclosure Date: November 01, 2023 (last updated December 14, 2023)
Incorrect security UI in Picture In Picture in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perform domain spoofing via a crafted local HTML page. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2023-5858

Disclosure Date: November 01, 2023 (last updated December 14, 2023)
Inappropriate implementation in WebApp Provider in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2023-5857

Disclosure Date: November 01, 2023 (last updated December 14, 2023)
Inappropriate implementation in Downloads in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potentially execute arbitrary code via a malicious file. (Chromium security severity: Medium)