Записи Google
16 719 опубликованных записей вендора google.
Профиль для исследователя
- Попали в KEV
- 113 · 0,7 %
- С эксплойтом
- 135 · 0,8 %
- Pre-auth RCE
- 1 845
- С записью об исправлении
- 41,9 %
- Медиана: публикация → KEV
- 29 дн.
Повторяющиеся классы
- CWE-416 Use After Free1 994
- CWE-787 Out-of-bounds Write1 647
- CWE-20 Improper Input Validation1 348
- CWE-125 Out-of-bounds Read1 270
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer830
- CWE-862 Missing Authorization790
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
10 000+ записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
99Срочно | CVE-2014-0497Готовый эксплойт | Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1adobe · flash player · CWE-191 | Критическая9,8 | KEV | 99,9 % | 5 февр. 2014 г. |
95Срочно | CVE-2023-4863Готовый эксплойт | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bogoogle · chrome · CWE-787 | Высокая8,8 | KEV | 100,0 % | 12 сент. 2023 г. |
95Срочно | CVE-2011-0611Готовый эксплойт | Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.adobe · flash player · CWE-843 | Высокая8,8 | KEV | 99,4 % | 13 апр. 2011 г. |
90Срочно | CVE-2018-17463Готовый эксплойт | Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a sgoogle · chrome | Высокая8,8 | KEV | 84,6 % | 14 нояб. 2018 г. |
90Срочно | CVE-2021-21224Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craftgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 84,2 % | 26 апр. 2021 г. |
89Срочно | CVE-2012-0754Готовый эксплойт | Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.xadobe · flash player · CWE-787 | Высокая8,1 | KEV | 91,2 % | 16 февр. 2012 г. |
89Срочно | CVE-2020-6418Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Высокая8,8 | KEV | 78,8 % | 27 февр. 2020 г. |
88Срочно | CVE-2018-15982Готовый эксплойт | Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.adobe · flash player · CWE-416 | Высокая7,8 | KEV | 89,6 % | 18 янв. 2019 г. |
88Срочно | CVE-2018-4878Готовый эксплойт | A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.adobe · flash player · CWE-416 | Высокая7,8 | KEV | 89,5 % | 6 февр. 2018 г. |
86Срочно | CVE-2022-2294Готовый эксплойт | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption viagoogle · chrome · CWE-787 | Высокая8,8 | KEV | 70,5 % | 27 июл. 2022 г. |
86Срочно | CVE-2021-21220Готовый эксплойт | Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit hegoogle · chrome · CWE-787 | Высокая8,8 | KEV | 70,4 % | 26 апр. 2021 г. |
85Срочно | CVE-2015-8651Готовый эксплойт | Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on adobe · air sdk · CWE-190 | Высокая8,8 | KEV | 67,7 % | 28 дек. 2015 г. |
84Срочно | CVE-2021-30551Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Высокая8,8 | KEV | 64,7 % | 15 июн. 2021 г. |
84Срочно | CVE-2021-30632Готовый эксплойт | Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafgoogle · chrome · CWE-787 | Высокая8,8 | KEV | 63,2 % | 8 окт. 2021 г. |
83Срочно | CVE-2019-2215Готовый эксплойт | A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel.google · android · CWE-416 | Высокая7,8 | KEV | 72,1 % | 11 окт. 2019 г. |
83Срочно | CVE-2018-6065Готовый эксплойт | Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3google · chrome · CWE-190 | Высокая8,8 | KEV | 60,3 % | 14 нояб. 2018 г. |
82Срочно | CVE-2026-2441Готовый эксплойт | Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cragoogle · chrome · CWE-416 | Высокая8,8 | KEV | 55,1 % | 13 февр. 2026 г. |
81Срочно | CVE-2016-0984Готовый эксплойт | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2adobe · flash player · CWE-416 | Высокая8,8 | KEV | 54,5 % | 10 февр. 2016 г. |
81Срочно | CVE-2020-15999Готовый эксплойт | Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption vigoogle · chrome · CWE-787 | Критическая9,6 | KEV | 44,3 % | 2 нояб. 2020 г. |
80Срочно | CVE-2011-0609Готовый эксплойт | Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier onadobe · flash player | Высокая7,8 | KEV | 63,5 % | 15 мар. 2011 г. |
80Срочно | CVE-2019-13720Готовый эксплойт | Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a cragoogle · chrome · CWE-416 | Высокая8,8 | KEV | 49,1 % | 25 нояб. 2019 г. |
80Срочно | CVE-2023-5217Готовый эксплойт | Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potengoogle · chrome · CWE-787 | Высокая8,8 | KEV | 49,0 % | 28 сент. 2023 г. |
80Срочно | CVE-2026-85046Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 48,9 % | 3 сент. 2026 г. |
79На этой неделе | CVE-2020-16009Готовый эксплойт | Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption google · chrome · CWE-787 | Высокая8,8 | KEV | 48,3 % | 2 нояб. 2020 г. |
79На этой неделе | CVE-2016-1646Готовый эксплойт | The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consgoogle · chrome · CWE-125 | Высокая8,8 | KEV | 48,1 % | 29 мар. 2016 г. |
- CVE-2014-049799Срочно
Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1
КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %adobe · flash player5 февр. 2014 г.
- CVE-2023-486395Срочно
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bo
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 100 %google · chrome12 сент. 2023 г.
- CVE-2011-061195Срочно
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 99 %adobe · flash player13 апр. 2011 г.
- CVE-2018-1746390Срочно
Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a s
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 85 %google · chrome14 нояб. 2018 г.
- CVE-2021-2122490Срочно
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 84 %google · chrome26 апр. 2021 г.
- CVE-2012-075489Срочно
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x
ВысокаяCVSS 8,1KEVГотовый эксплойтEPSS 91 %adobe · flash player16 февр. 2012 г.
- CVE-2020-641889Срочно
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 79 %google · chrome27 февр. 2020 г.
- CVE-2018-1598288Срочно
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 90 %adobe · flash player18 янв. 2019 г.
- CVE-2018-487888Срочно
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 90 %adobe · flash player6 февр. 2018 г.
- CVE-2022-229486Срочно
Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 70 %google · chrome27 июл. 2022 г.
- CVE-2021-2122086Срочно
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit he
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 70 %google · chrome26 апр. 2021 г.
- CVE-2015-865185Срочно
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 68 %adobe · air sdk28 дек. 2015 г.
- CVE-2021-3055184Срочно
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 65 %google · chrome15 июн. 2021 г.
- CVE-2021-3063284Срочно
Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a craf
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 63 %google · chrome8 окт. 2021 г.
- CVE-2019-221583Срочно
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel.
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 72 %google · android11 окт. 2019 г.
- CVE-2018-606583Срочно
Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 60 %google · chrome14 нояб. 2018 г.
- CVE-2026-244182Срочно
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 55 %google · chrome13 февр. 2026 г.
- CVE-2016-098481Срочно
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 55 %adobe · flash player10 февр. 2016 г.
- CVE-2020-1599981Срочно
Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption vi
КритическаяCVSS 9,6KEVГотовый эксплойтEPSS 44 %google · chrome2 нояб. 2020 г.
- CVE-2011-060980Срочно
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 64 %adobe · flash player15 мар. 2011 г.
- CVE-2019-1372080Срочно
Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a cra
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 49 %google · chrome25 нояб. 2019 г.
- CVE-2023-521780Срочно
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to poten
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 49 %google · chrome28 сент. 2023 г.
- CVE-2026-8504680Срочно
Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a cr
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 49 %google · chrome3 сент. 2026 г.
- CVE-2020-1600979На этой неделе
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 48 %google · chrome2 нояб. 2020 г.
- CVE-2016-164679На этой неделе
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly cons
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 48 %google · chrome29 мар. 2016 г.