Search CVE reports
16291 – 16300 of 44107 results
Insufficient data validation in File System API in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass File System restrictions via a crafted HTML page and malicious file. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Insufficient data validation in File System API in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass File System restrictions via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Use after free in ChromeOS Notifications in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a remote attacker who convinced a user to reboot Chrome OS to potentially exploit heap corruption via UI interaction. (Chromium...
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 106.0.5249.62 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass security feature via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Type confusion in Blink in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Use after free in logging in Google Chrome prior to 106.0.5249.62 allowed a remote attacker who had compromised a WebUI process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Incorrect security UI in full screen in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Insufficient validation of untrusted input in VPN in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a local attacker to bypass managed device restrictions via physical access to the device. (Chromium security severity: Medium)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |
Use after free in import in Google Chrome prior to 106.0.5249.62 allowed a remote attacker who had compromised a WebUI process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
1 affected package
chromium-browser
Package | 16.04 LTS |
---|---|
chromium-browser | Ignored |