Skip to main content

Vendor/product archive

google / chrome CVEs

Beta · best-effort

5,454 CVEs tagged to google / chrome438 Critical, 2,709 High, 2,239 Medium, 68 Low, 0 Unrated.

CVE-2010-4205

Published Nov 6, 2010

Google Chrome before 7.0.517.44 does not properly handle the data types of event objects, which allows remote attackers to cause a denial of service or possibly have unspecified o…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4202

Published Nov 6, 2010

Multiple integer overflows in Google Chrome before 7.0.517.44 on Linux allow remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4201

Published Nov 6, 2010

Use-after-free vulnerability in Google Chrome before 7.0.517.44 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involvin…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4199

Published Nov 6, 2010

Google Chrome before 7.0.517.44 does not properly perform a cast of an unspecified variable during processing of an SVG use element, which allows remote attackers to cause a denia…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4042

Published Oct 21, 2010

Google Chrome before 7.0.517.41 does not properly handle element maps, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vec…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4041

Published Oct 21, 2010

The sandbox implementation in Google Chrome before 7.0.517.41 on Linux does not properly constrain worker processes, which might allow remote attackers to bypass intended access r…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4039

Published Oct 21, 2010

Google Chrome before 7.0.517.41 on Linux does not properly set the PATH environment variable, which has unspecified impact and attack vectors.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4038

Published Oct 21, 2010

The Web Sockets implementation in Google Chrome before 7.0.517.41 does not properly handle a shutdown action, which allows remote attackers to cause a denial of service (applicati…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4037

Published Oct 21, 2010

Unspecified vulnerability in Google Chrome before 7.0.517.41 allows remote attackers to bypass the pop-up blocker via unknown vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4036

Published Oct 21, 2010

Google Chrome before 7.0.517.41 does not properly handle the unloading of a page, which allows remote attackers to spoof URLs via unspecified vectors.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4035

Published Oct 21, 2010

Google Chrome before 7.0.517.41 does not properly perform autofill operations for forms, which allows remote attackers to cause a denial of service (application crash) or possibly…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4034

Published Oct 21, 2010

Google Chrome before 7.0.517.41 does not properly handle forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other i…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4033

Published Oct 21, 2010

Google Chrome before 7.0.517.41 does not properly implement the autofill and autocomplete functionality, which allows remote attackers to conduct "profile spamming" attacks via un…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3730

Published Oct 5, 2010

Google Chrome before 6.0.472.62 does not properly use information about the origin of a document to manage properties, which allows remote attackers to have an unspecified impact…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-3729

Published Oct 5, 2010

The SPDY protocol implementation in Google Chrome before 6.0.472.62 does not properly manage buffers, which might allow remote attackers to execute arbitrary code via unspecified…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1825

Published Sep 24, 2010

Use-after-free vulnerability in WebKit, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified other impact…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1824

Published Sep 24, 2010

Use-after-free vulnerability in WebKit, as used in Apple iTunes before 10.2 on Windows, Apple Safari, and Google Chrome before 6.0.472.59, allows remote attackers to execute arbit…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1823

Published Sep 24, 2010

Use-after-free vulnerability in WebKit before r65958, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 5,276-5,300 of 5,454 CVEsPage 212 of 219