Google Chrome vulnerabilities
5,831 known vulnerabilities affecting google/chrome.
Total CVEs
5,831
CISA KEV
75
actively exploited
Public exploits
88
Exploited in wild
87
Severity breakdown
CRITICAL498HIGH2799MEDIUM2453LOW79UNKNOWN2
Vulnerabilities
Page 136 of 292
CVE-2021-37980P3HIGHCVSS 7.4fixed in 94.0.4606.81≥ unspecified, < 94.0.4606.812021-11-02
CVE-2021-37980 [HIGH] CVE-2021-37980: Inappropriate implementation in Sandbox in Google Chrome prior to 94.0.4606.81 allowed a remote atta
Inappropriate implementation in Sandbox in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially bypass site isolation via Windows.
nvd
CVE-2016-5146P3CRITICALCVSS 9.8≤ 52.0.2743.822016-08-07
CVE-2016-5146 [CRITICAL] CVE-2016-5146: Multiple unspecified vulnerabilities in Google Chrome before 52.0.2743.116 allow attackers to cause
Multiple unspecified vulnerabilities in Google Chrome before 52.0.2743.116 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
nvd
CVE-2024-7018P3HIGHCVSS 7.8fixed in 124.0.6367.78≥ 124.0.6367.78, < 124.0.6367.782024-09-23
CVE-2024-7018 [HIGH] CWE-122 CVE-2024-7018: Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to pot
Heap buffer overflow in PDF in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)
nvd
CVE-2017-15404P3HIGHCVSS 7.8fixed in 61.0.3163.113≥ unspecified, < 61.0.3163.1132019-01-09
CVE-2017-15404 [HIGH] CWE-367 CVE-2017-15404: An ability to process crash dumps under root privileges and inappropriate symlinks handling could le
An ability to process crash dumps under root privileges and inappropriate symlinks handling could lead to a local privilege escalation in Crash Reporting in Google Chrome on Chrome OS prior to 61.0.3163.113 allowed a local attacker to perform privilege escalation via a crafted HTML page.
nvd
CVE-2019-13768P3HIGHCVSS 7.4fixed in 72.0.3626.81≥ unspecified, < 72.0.3626.812023-01-02
CVE-2019-13768 [HIGH] CWE-416 CVE-2019-13768: Use after free in FileAPI in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potent
Use after free in FileAPI in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chrome security severity: High)
nvd
CVE-2022-3308P3HIGHCVSS 7.4fixed in 106.0.5249.62≥ unspecified, < 106.0.5249.622022-11-01
CVE-2022-3308 [HIGH] CWE-602 CVE-2022-3308: Insufficient policy enforcement in developer tools in Google Chrome prior to 106.0.5249.62 allowed a
Insufficient policy enforcement in developer tools in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
nvd
CVE-2016-1643P3HIGHCVSS 8.8≤ 49.0.2623.752016-03-13
CVE-2016-1643 [HIGH] CWE-361 CVE-2016-1643: The ImageInputType::ensurePrimaryContent function in WebKit/Source/core/html/forms/ImageInputType.cp
The ImageInputType::ensurePrimaryContent function in WebKit/Source/core/html/forms/ImageInputType.cpp in Blink, as used in Google Chrome before 49.0.2623.87, does not properly maintain the user agent shadow DOM, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion.
nvd
CVE-2026-11035P3HIGHCVSS 7.3fixed in 149.0.7827.53≥ 149.0.7827.53, < 149.0.7827.532026-06-04
CVE-2026-11035 [HIGH] CWE-20 CVE-2026-11035: Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 149.0.7827.53 allow
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to perform privilege escalation via a crafted XML file. (Chromium security severity: Medium)
nvd
CVE-2010-1822P3HIGHCVSS 8.8fixed in 6.0.472.622010-10-04
CVE-2010-1822 [HIGH] CWE-704 CVE-2010-1822: WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an SVG element in a non-SVG document.
nvd
CVE-2016-1647P3HIGHCVSS 8.8≤ 49.0.2623.952016-03-29
CVE-2016-1647 [HIGH] CVE-2016-1647: Use-after-free vulnerability in the RenderWidgetHostImpl::Destroy function in content/browser/render
Use-after-free vulnerability in the RenderWidgetHostImpl::Destroy function in content/browser/renderer_host/render_widget_host_impl.cc in the Navigation implementation in Google Chrome before 49.0.2623.108 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2016-1648P3HIGHCVSS 8.8≤ 49.0.2623.952016-03-29
CVE-2016-1648 [HIGH] CVE-2016-1648: Use-after-free vulnerability in the GetLoadTimes function in renderer/loadtimes_extension_bindings.c
Use-after-free vulnerability in the GetLoadTimes function in renderer/loadtimes_extension_bindings.cc in the Extensions implementation in Google Chrome before 49.0.2623.108 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code.
nvd
CVE-2016-1634P3HIGHCVSS 8.8≤ 48.0.2564.1162016-03-06
CVE-2016-1634 [HIGH] CVE-2016-1634: Use-after-free vulnerability in the StyleResolver::appendCSSStyleSheet function in WebKit/Source/cor
Use-after-free vulnerability in the StyleResolver::appendCSSStyleSheet function in WebKit/Source/core/css/resolver/StyleResolver.cpp in Blink, as used in Google Chrome before 49.0.2623.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site that triggers Cascading Style Sheets (CSS) style invalid
nvd
CVE-2016-5154P3HIGHCVSS 8.8≤ 52.0.2743.1162016-09-11
CVE-2016-5154 [HIGH] CWE-119 CVE-2016-5154: Multiple heap-based buffer overflows in PDFium, as used in Google Chrome before 53.0.2785.89 on Wind
Multiple heap-based buffer overflows in PDFium, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allow remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted JBig2 image.
nvd
CVE-2016-5156P3HIGHCVSS 8.8≤ 52.0.2743.1162016-09-11
CVE-2016-5156 [HIGH] CWE-416 CVE-2016-5156: extensions/renderer/event_bindings.cc in the event bindings in Google Chrome before 53.0.2785.89 on
extensions/renderer/event_bindings.cc in the event bindings in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux attempts to process filtered events after failure to add an event matcher, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown v
nvd
CVE-2016-1630P3HIGHCVSS 8.8≤ 48.0.2564.1162016-03-06
CVE-2016-1630 [HIGH] CWE-264 CVE-2016-1630: The ContainerNode::parserRemoveChild function in WebKit/Source/core/dom/ContainerNode.cpp in Blink,
The ContainerNode::parserRemoveChild function in WebKit/Source/core/dom/ContainerNode.cpp in Blink, as used in Google Chrome before 49.0.2623.75, mishandles widget updates, which makes it easier for remote attackers to bypass the Same Origin Policy via a crafted web site.
nvd
CVE-2017-5047P3HIGHCVSS 8.8≤ 57.0.2987.75≤ 57.0.2987.1002017-04-25
CVE-2017-5047 [HIGH] CWE-190 CVE-2017-5047: An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a crafted video file, related to ChunkDemuxer.
nvd
CVE-2017-5049P3HIGHCVSS 8.8≤ 57.0.2987.75≤ 57.0.2987.1002017-04-25
CVE-2017-5049 [HIGH] CWE-190 CVE-2017-5049: An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a crafted video file, related to ChunkDemuxer.
nvd
CVE-2017-5048P3HIGHCVSS 8.8≤ 57.0.2987.75≤ 57.0.2987.1002017-04-25
CVE-2017-5048 [HIGH] CWE-190 CVE-2017-5048: An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a crafted video file, related to ChunkDemuxer.
nvd
CVE-2017-5050P3HIGHCVSS 8.8≤ 57.0.2987.75≤ 57.0.2987.1002017-04-25
CVE-2017-5050 [HIGH] CWE-190 CVE-2017-5050: An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a crafted video file, related to ChunkDemuxer.
nvd
CVE-2017-5051P3HIGHCVSS 8.8≤ 57.0.2987.75≤ 57.0.2987.1002017-04-25
CVE-2017-5051 [HIGH] CWE-190 CVE-2017-5051: An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and
An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed a remote attacker to perform an out of bounds memory write via a crafted video file, related to ChunkDemuxer.
nvd