google kayıtları
google üreticisine ait 16.718 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 113 · %0,7
- Silahlaştırılmış
- 135 · %0,8
- Pre-auth RCE
- 1.845
- Düzeltme kaydı olan
- %41,9
- Yayından KEV’e ortanca
- 29 gün
Tekrar eden sınıflar
- CWE-416 Use After Free1.994
- CWE-787 Out-of-bounds Write1.647
- CWE-20 Improper Input Validation1.348
- CWE-125 Out-of-bounds Read1.270
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer830
- CWE-862 Missing Authorization790
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
10.000+ kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
99Hemen | CVE-2014-0497Silahlaştırılmış | Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1adobe · flash player · CWE-191 | Kritik9,8 | KEV | %99,9 | 5 Şub 2014 |
95Hemen | CVE-2023-4863Silahlaştırılmış | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bogoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %100,0 | 12 Eyl 2023 |
95Hemen | CVE-2011-0611Silahlaştırılmış | Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.adobe · flash player · CWE-843 | Yüksek8,8 | KEV | %99,4 | 13 Nis 2011 |
90Hemen | CVE-2018-17463Silahlaştırılmış | Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a sgoogle · chrome | Yüksek8,8 | KEV | %84,6 | 14 Kas 2018 |
90Hemen | CVE-2021-21224Silahlaştırılmış | Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craftgoogle · chrome · CWE-843 | Yüksek8,8 | KEV | %84,2 | 26 Nis 2021 |
89Hemen | CVE-2012-0754Silahlaştırılmış | Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.xadobe · flash player · CWE-787 | Yüksek8,1 | KEV | %91,2 | 16 Şub 2012 |
89Hemen | CVE-2020-6418Silahlaştırılmış | Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Yüksek8,8 | KEV | %78,8 | 27 Şub 2020 |
88Hemen | CVE-2018-15982Silahlaştırılmış | Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.adobe · flash player · CWE-416 | Yüksek7,8 | KEV | %89,6 | 18 Oca 2019 |
88Hemen | CVE-2018-4878Silahlaştırılmış | A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.adobe · flash player · CWE-416 | Yüksek7,8 | KEV | %89,5 | 6 Şub 2018 |
86Hemen | CVE-2022-2294Silahlaştırılmış | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption viagoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %70,5 | 27 Tem 2022 |
86Hemen | CVE-2021-21220Silahlaştırılmış | Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit hegoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %70,4 | 26 Nis 2021 |
85Hemen | CVE-2015-8651Silahlaştırılmış | Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on adobe · air sdk · CWE-190 | Yüksek8,8 | KEV | %67,7 | 28 Ara 2015 |
84Hemen | CVE-2021-30551Silahlaştırılmış | Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Yüksek8,8 | KEV | %64,7 | 15 Haz 2021 |
84Hemen | CVE-2021-30632Silahlaştırılmış | Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafgoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %63,2 | 8 Eki 2021 |
83Hemen | CVE-2019-2215Silahlaştırılmış | A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel.google · android · CWE-416 | Yüksek7,8 | KEV | %72,1 | 11 Eki 2019 |
83Hemen | CVE-2018-6065Silahlaştırılmış | Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3google · chrome · CWE-190 | Yüksek8,8 | KEV | %60,3 | 14 Kas 2018 |
82Hemen | CVE-2026-2441Silahlaştırılmış | Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cragoogle · chrome · CWE-416 | Yüksek8,8 | KEV | %55,1 | 13 Şub 2026 |
81Hemen | CVE-2016-0984Silahlaştırılmış | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2adobe · flash player · CWE-416 | Yüksek8,8 | KEV | %54,5 | 10 Şub 2016 |
81Hemen | CVE-2020-15999Silahlaştırılmış | Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption vigoogle · chrome · CWE-787 | Kritik9,6 | KEV | %44,3 | 2 Kas 2020 |
80Hemen | CVE-2011-0609Silahlaştırılmış | Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier onadobe · flash player | Yüksek7,8 | KEV | %63,5 | 15 Mar 2011 |
80Hemen | CVE-2019-13720Silahlaştırılmış | Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a cragoogle · chrome · CWE-416 | Yüksek8,8 | KEV | %49,1 | 25 Kas 2019 |
80Hemen | CVE-2023-5217Silahlaştırılmış | Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potengoogle · chrome · CWE-787 | Yüksek8,8 | KEV | %49,0 | 28 Eyl 2023 |
80Hemen | CVE-2026-85046Silahlaştırılmış | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crgoogle · chrome · CWE-843 | Yüksek8,8 | KEV | %48,9 | 3 Eyl 2026 |
79Bu hafta | CVE-2020-16009Silahlaştırılmış | Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption google · chrome · CWE-787 | Yüksek8,8 | KEV | %48,3 | 2 Kas 2020 |
79Bu hafta | CVE-2016-1646Silahlaştırılmış | The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consgoogle · chrome · CWE-125 | Yüksek8,8 | KEV | %48,1 | 29 Mar 2016 |
- CVE-2014-049799Hemen
Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 1
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100adobe · flash player5 Şub 2014
- CVE-2023-486395Hemen
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bo
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %100google · chrome12 Eyl 2023
- CVE-2011-061195Hemen
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %99adobe · flash player13 Nis 2011
- CVE-2018-1746390Hemen
Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a s
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %85google · chrome14 Kas 2018
- CVE-2021-2122490Hemen
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %84google · chrome26 Nis 2021
- CVE-2012-075489Hemen
Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x
YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %91adobe · flash player16 Şub 2012
- CVE-2020-641889Hemen
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %79google · chrome27 Şub 2020
- CVE-2018-1598288Hemen
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %90adobe · flash player18 Oca 2019
- CVE-2018-487888Hemen
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %90adobe · flash player6 Şub 2018
- CVE-2022-229486Hemen
Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %70google · chrome27 Tem 2022
- CVE-2021-2122086Hemen
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit he
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %70google · chrome26 Nis 2021
- CVE-2015-865185Hemen
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %68adobe · air sdk28 Ara 2015
- CVE-2021-3055184Hemen
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %65google · chrome15 Haz 2021
- CVE-2021-3063284Hemen
Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a craf
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %63google · chrome8 Eki 2021
- CVE-2019-221583Hemen
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel.
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %72google · android11 Eki 2019
- CVE-2018-606583Hemen
Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %60google · chrome14 Kas 2018
- CVE-2026-244182Hemen
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %55google · chrome13 Şub 2026
- CVE-2016-098481Hemen
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %55adobe · flash player10 Şub 2016
- CVE-2020-1599981Hemen
Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption vi
KritikCVSS 9,6KEVSilahlaştırılmışEPSS %44google · chrome2 Kas 2020
- CVE-2011-060980Hemen
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on
YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %64adobe · flash player15 Mar 2011
- CVE-2019-1372080Hemen
Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a cra
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %49google · chrome25 Kas 2019
- CVE-2023-521780Hemen
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to poten
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %49google · chrome28 Eyl 2023
- CVE-2026-8504680Hemen
Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a cr
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %49google · chrome3 Eyl 2026
- CVE-2020-1600979Bu hafta
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %48google · chrome2 Kas 2020
- CVE-2016-164679Bu hafta
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly cons
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %48google · chrome29 Mar 2016