Google Chrome vulnerabilities
5,831 known vulnerabilities affecting google/chrome.
Total CVEs
5,831
CISA KEV
75
actively exploited
Public exploits
88
Exploited in wild
87
Severity breakdown
CRITICAL498HIGH2799MEDIUM2453LOW79UNKNOWN2
Vulnerabilities
Page 134 of 292
CVE-2020-6477P3HIGHCVSS 7.8fixed in 83.0.4103.61≥ unspecified, < 83.0.4103.612020-05-21
CVE-2020-6477 [HIGH] CWE-59 CVE-2020-6477: Inappropriate implementation in installer in Google Chrome on OS X prior to 83.0.4103.61 allowed a l
Inappropriate implementation in installer in Google Chrome on OS X prior to 83.0.4103.61 allowed a local attacker to perform privilege escalation via a crafted file.
nvd
CVE-2024-7979P3HIGHCVSS 7.8fixed in 128.0.6613.84≥ 128.0.6613.84, < 128.0.6613.842024-08-21
CVE-2024-7979 [HIGH] CWE-345 CVE-2024-7979: Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed
Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a crafted symbolic link. (Chromium security severity: Medium)
nvd
CVE-2018-20072P3HIGHCVSS 7.8fixed in 73.0.3683.75≥ 73.0.3683.75, < 73.0.3683.752024-09-23
CVE-2018-20072 [HIGH] CVE-2018-20072: Insufficient data validation in PDF in Google Chrome prior to 73.0.3683.75 allowed a remote attacker
Insufficient data validation in PDF in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform out of bounds memory access via a crafted PDF file. (Chromium security severity: Low)
nvd
CVE-2021-30605P3HIGHCVSS 7.8≥ unspecified, < 1.0.2.02021-09-08
CVE-2021-30605 [HIGH] CWE-287 CVE-2021-30605: Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 lo
Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.
nvd
CVE-2018-16081P3HIGHCVSS 7.4fixed in 69.0.3497.81≥ unspecified, < 69.0.3497.812019-01-09
CVE-2018-16081 [HIGH] CWE-862 CVE-2018-16081: Allowing the chrome.debugger API to run on file:// URLs in DevTools in Google Chrome prior to 69.0.3
Allowing the chrome.debugger API to run on file:// URLs in DevTools in Google Chrome prior to 69.0.3497.81 allowed an attacker who convinced a user to install a malicious extension to access files on the local file system without file access permission via a crafted Chrome Extension.
nvd
CVE-2015-1251P3MEDIUMCVSS 6.8≤ 42.0.2311.1522015-05-20
CVE-2015-1251 [MEDIUM] CVE-2015-1251: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem i
Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.
nvd
CVE-2022-1145P3HIGHCVSS 7.5fixed in 100.0.4896.60≥ unspecified, < 100.0.4896.602022-07-23
CVE-2022-1145 [HIGH] CWE-416 CVE-2022-1145: Use after free in Extensions in Google Chrome prior to 100.0.4896.60 allowed an attacker who convinc
Use after free in Extensions in Google Chrome prior to 100.0.4896.60 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via specific user interaction and profile destruction.
nvd
CVE-2026-11297P3HIGHCVSS 7.7fixed in 149.0.7827.53≥ 149.0.7827.53, < 149.0.7827.532026-06-05
CVE-2026-11297 [HIGH] CWE-20 CVE-2026-11297: Insufficient validation of untrusted input in Reader Mode in Google Chrome on Android prior to 149.0
Insufficient validation of untrusted input in Reader Mode in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to bypass navigation restrictions via a malicious file. (Chromium security severity: Low)
nvd
CVE-2015-6789P3CRITICALCVSS 9.3≤ 47.0.2526.732015-12-14
CVE-2015-6789 [CRITICAL] CWE-362 CVE-2015-6789: Race condition in the MutationObserver implementation in Blink, as used in Google Chrome before 47.0
Race condition in the MutationObserver implementation in Blink, as used in Google Chrome before 47.0.2526.80, allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact by leveraging unanticipated object deletion.
nvd
CVE-2016-5131P3HIGHCVSS 8.8fixed in 52.0.2743.822016-07-23
CVE-2016-5131 [HIGH] CWE-416 CVE-2016-5131: Use-after-free vulnerability in libxml2 through 2.9.4, as used in Google Chrome before 52.0.2743.82,
Use-after-free vulnerability in libxml2 through 2.9.4, as used in Google Chrome before 52.0.2743.82, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the XPointer range-to function.
nvd
CVE-2010-1773P3HIGHCVSS 8.8fixed in 5.0.375.702010-09-24
CVE-2010-1773 [HIGH] CWE-193 CVE-2010-1773: Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cause a denial of service (memory corruption and application crash), or possibly execute arbitrary code via vectors related to list marker
nvd
CVE-2016-1641P3HIGHCVSS 8.8≤ 48.0.2564.1162016-03-06
CVE-2016-1641 [HIGH] CVE-2016-1641: Use-after-free vulnerability in content/browser/web_contents/web_contents_impl.cc in Google Chrome b
Use-after-free vulnerability in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 49.0.2623.75 allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an image download after a certain data structure is deleted, as demonstrated by a favicon.ico download.
nvd
CVE-2009-2352P4MEDIUMCVSS 4.3PoC≤ 1.0.154.48v0.2.149.29+14 more2009-07-07
CVE-2009-2352 [MEDIUM] CVE-2009-2352: Google Chrome 1.0.154.48 and earlier does not block javascript: URIs in Refresh headers in HTTP resp
Google Chrome 1.0.154.48 and earlier does not block javascript: URIs in Refresh headers in HTTP responses, which allows remote attackers to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header or (2) specifying the content of a Refresh header, a related issue to CVE-2009-1312. NOTE: it was later reported that 2.0.17
nvd
CVE-2017-5054P3HIGHCVSS 8.8fixed in 57.0.2987.133fixed in 57.0.2987.1322017-10-27
CVE-2017-5054 [HIGH] CWE-125 CVE-2017-5054: An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to obtain heap memory contents via a crafted HTML page.
nvd
CVE-2016-1624P3HIGHCVSS 8.8≤ 48.0.2564.1032016-02-14
CVE-2016-1624 [HIGH] CWE-119 CVE-2016-1624: Integer underflow in the ProcessCommandsInternal function in dec/decode.c in Brotli, as used in Goog
Integer underflow in the ProcessCommandsInternal function in dec/decode.c in Brotli, as used in Google Chrome before 48.0.2564.109, allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted data with brotli compression.
nvd
CVE-2016-1631P3HIGHCVSS 8.8≤ 48.0.2564.1162016-03-06
CVE-2016-1631 [HIGH] CWE-264 CVE-2016-1631: The PPB_Flash_MessageLoop_Impl::InternalRun function in content/renderer/pepper/ppb_flash_message_lo
The PPB_Flash_MessageLoop_Impl::InternalRun function in content/renderer/pepper/ppb_flash_message_loop_impl.cc in the Pepper plugin in Google Chrome before 49.0.2623.75 mishandles nested message loops, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
nvd
CVE-2016-5177P3HIGHCVSS 8.8≤ 53.0.2785.1292017-05-23
CVE-2016-5177 [HIGH] CWE-416 CVE-2016-5177: Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to
Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2018-17461P3HIGHCVSS 8.8fixed in 68.0.3440.75≥ unspecified, < 68.0.3440.752019-01-09
CVE-2018-17461 [HIGH] CWE-125 CVE-2018-17461: An out of bounds read in PDFium in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to
An out of bounds read in PDFium in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
nvd
CVE-2026-5273P3MEDIUMCVSS 6.3fixed in 146.0.7680.177≥ 146.0.7680.178, < 146.0.7680.1782026-04-01
CVE-2026-5273 [MEDIUM] CWE-416 CVE-2026-5273: Use after free in CSS in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute
Use after free in CSS in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
nvd
CVE-2010-2302P3CRITICALCVSS 10.0fixed in 5.0.375.702010-06-15
CVE-2010-2302 [CRITICAL] CVE-2010-2302: Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote a
Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with shadow DOM trees, aka rdar problem 8007953. NOTE: this might overlap CVE-2010-1771.
nvd