CVE-2024-5830
published 2024-06-11CVE-2024-5830: Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page…
PriorityP346high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.92%
56.4th percentile
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chromium | chromium | >= 0 < 126.0.6478.56-1~deb12u1 | 126.0.6478.56-1~deb12u1 |
| chromium | chromium | >= 0 < 126.0.6478.56-1 | 126.0.6478.56-1 |
| chromium | chromium | >= 0 < 126.0.6478.56-1 | 126.0.6478.56-1 |
| debian | chromium | < chromium 126.0.6478.56-1~deb12u1 (bookworm) | chromium 126.0.6478.56-1~deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| github.com | plentico_plenti | >= 0 < 0.7.17 | 0.7.17 |
| chrome | < 126.0.6478.54 | 126.0.6478.54 | |
| chrome | >= 126.0.6478.54 < 126.0.6478.54 | 126.0.6478.54 | |
| chrome_chrome | — | — | |
| msrc | microsoft_edge | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_msrc8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Plenti - Code Injection - Denial of Services
osv·2025-02-05
CVE-2025-26260 [MEDIUM] Plenti - Code Injection - Denial of Services
Plenti - Code Injection - Denial of Services
### Summary
While pushing a file via postLocal method if user add javascript code in file parameter that codes can exe in v8go context.
### Details
While posting a file via postLocal, any attacker will add javascript codes to file parameter. That parameter content pass to componentSignature method after some validation. After that componentSignature parameter concat with ssrStr parameter.
Last part of compileSvelte function ssrStr parameter executed in v8go engine.
This cause to any one who can post a file also can push javascript code and run it. Thanks to v8go we can't use all javascript metod, if there is no any vulnerability in v8go we can't escape sandbox and can't run dangerous command like opening socket etc. But we can create infin
GHSA
Plenti - Code Injection - Denial of Services
ghsa·2025-02-05
CVE-2025-26260 [MEDIUM] CWE-94 Plenti - Code Injection - Denial of Services
Plenti - Code Injection - Denial of Services
### Summary
While pushing a file via postLocal method if user add javascript code in file parameter that codes can exe in v8go context.
### Details
While posting a file via postLocal, any attacker will add javascript codes to file parameter. That parameter content pass to componentSignature method after some validation. After that componentSignature parameter concat with ssrStr parameter.
Last part of compileSvelte function ssrStr parameter executed in v8go engine.
This cause to any one who can post a file also can push javascript code and run it. Thanks to v8go we can't use all javascript metod, if there is no any vulnerability in v8go we can't escape sandbox and can't run dangerous command like opening socket etc. But we can create infin
OSV
CVE-2024-5830: Type Confusion in V8 in Google Chrome prior to 126
osv·2024-06-11·CVSS 8.8
CVE-2024-5830 [HIGH] CVE-2024-5830: Type Confusion in V8 in Google Chrome prior to 126
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
GHSA
GHSA-fchp-8m28-g68f: Type Confusion in V8 in Google Chrome prior to 126
ghsa_unreviewed·2024-06-11
CVE-2024-5830 [HIGH] CWE-787 GHSA-fchp-8m28-g68f: Type Confusion in V8 in Google Chrome prior to 126
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
Microsoft
Chromium: CVE-2024-5830 Type Confusion in V8
vendor_msrc·2024-06-11·CVSS 8.8
CVE-2024-5830 [HIGH] Chromium: CVE-2024-5830 Type Confusion in V8
Chromium: CVE-2024-5830 Type Confusion in V8
Description: This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
FAQ: Why is this Chrome CVE included in the Security Update Guide?
The vulnerability assigned to this CVE is in Chromium Open Source Software (OSS) which is consumed by Microsoft Edge (Chromium-based). It is being documented in the Security Update Guide to announce that the latest version of Microsoft Edge (Chromium-based) is no longer vulnerable.
How can I see the version of the browser?
In your Microsoft Edge browser, click on the 3 dots (...) on the very right-hand side of the window
Click on Help and Feedback
Click on About Microsoft Edge
FAQ:
Micros
Chrome
Stable Channel Update for Desktop: CVE-2024-5830
vendor_chrome·2024-06-11·CVSS 8.8
CVE-2024-5830 [HIGH] Stable Channel Update for Desktop: CVE-2024-5830
Stable Channel Update for Desktop
CVE-2024-5830: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab on 2024-05-24 [$10000][ 339171223 ] High CVE-2024-5831: Use after free in Dawn
Reported by wgslfuzz on 2024-05-07 [$10000][ 340196361 ] High CVE-2024-5832: Use after free in Dawn
Severity: high
Debian
CVE-2024-5830: chromium - Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote at...
vendor_debian·2024·CVSS 8.8
CVE-2024-5830 [HIGH] CVE-2024-5830: chromium - Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote at...
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)
Scope: local
bookworm: resolved (fixed in 126.0.6478.56-1~deb12u1)
bullseye: open
forky: resolved (fixed in 126.0.6478.56-1)
sid: resolved (fixed in 126.0.6478.56-1)
trixie: resolved (fixed in 126.0.6478.56-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://chromereleases.googleblog.com/2024/06/stable-channel-update-for-desktop.htmlhttps://issues.chromium.org/issues/342456991https://lists.fedoraproject.org/archives/list/[email protected]/message/7VXA32LXMNK3DSK3JBRLTBPFUH7LTODU/https://lists.fedoraproject.org/archives/list/[email protected]/message/MPU7AB53QQVNTBPGRMJRY5SXJNYWW3FX/https://chromereleases.googleblog.com/2024/06/stable-channel-update-for-desktop.htmlhttps://issues.chromium.org/issues/342456991https://lists.fedoraproject.org/archives/list/[email protected]/message/7VXA32LXMNK3DSK3JBRLTBPFUH7LTODU/https://lists.fedoraproject.org/archives/list/[email protected]/message/MPU7AB53QQVNTBPGRMJRY5SXJNYWW3FX/
2024-06-11
Published