📦

backports_sle

Vendor: opensuse

Actively Exploited 3 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 38 Remote Access
Total CVEs 502 Total Indexed
Avg. EPSS 3.97% Exploit Prob.
Latest CVE CVE-2022-21950 Sep 07

Security Vulnerability Index

Page 3 / 51
8.8 CVSS

Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC stream.

EPSS: 1.04%
6.5 CVSS

Integer overflow in media in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS: 1.32%
6.5 CVSS

Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to spoof security UI via a crafted HTML page.

EPSS: 1.62%
6.5 CVSS

Insufficient policy enforcement in Omnibox in Google Chrome on iOS prior to 86.0.4240.75 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted URL.

EPSS: 1.28%
7.8 CVSS

Insufficient data validation in webUI in Google Chrome on ChromeOS prior to 86.0.4240.75 allowed a local attacker to bypass content security policy via a crafted HTML page.

EPSS: 0.29%
6.5 CVSS

Inappropriate implementation in cache in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

EPSS: 1.37%
6.5 CVSS

Out of bounds read in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

EPSS: 1.37%
7.8 CVSS

Insufficient policy enforcement in Intents in Google Chrome on Android prior to 86.0.4240.75 allowed a local attacker to bypass navigation restrictions via crafted Intents.

EPSS: 0.24%
8.8 CVSS

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS: 1.58%
8.8 CVSS

Insufficient data validation in navigation in Google Chrome on Android prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page.

EPSS: 1.49%