Show filters
601 Total Results
Displaying 81-90 of 601
Sort by:
Attacker Value
Unknown

CVE-2024-2631

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Inappropriate implementation in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Attacker Value
Unknown

CVE-2024-2630

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Inappropriate implementation in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-2629

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Incorrect security UI in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-2628

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Inappropriate implementation in Downloads in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform UI spoofing via a crafted URL. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-2627

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Use after free in Canvas in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-2626

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Out of bounds read in Swiftshader in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium)
Attacker Value
Unknown

CVE-2024-2625

Disclosure Date: March 20, 2024 (last updated April 02, 2024)
Object lifecycle issue in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2024-2400

Disclosure Date: March 13, 2024 (last updated December 20, 2024)
Use after free in Performance Manager in Google Chrome prior to 122.0.6261.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2024-23284

Disclosure Date: March 08, 2024 (last updated December 21, 2024)
A logic issue was addressed with improved state management. This issue is fixed in tvOS 17.4, macOS Sonoma 14.4, visionOS 1.1, iOS 17.4 and iPadOS 17.4, watchOS 10.4, iOS 16.7.6 and iPadOS 16.7.6, Safari 17.4. Processing maliciously crafted web content may prevent Content Security Policy from being enforced.
Attacker Value
Unknown

CVE-2024-23280

Disclosure Date: March 08, 2024 (last updated December 21, 2024)
An injection issue was addressed with improved validation. This issue is fixed in Safari 17.4, macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4, watchOS 10.4, tvOS 17.4. A maliciously crafted webpage may be able to fingerprint the user.