Google Chrome Chrome vulnerabilities
1,139 known vulnerabilities affecting google/chrome_chrome.
Total CVEs
1,139
CISA KEV
47
actively exploited
Public exploits
9
Exploited in wild
36
Severity breakdown
CRITICAL58HIGH621MEDIUM339LOW104UNKNOWN17
Vulnerabilities
Page 21 of 57
CVE-2024-5833HIGHCVSS 8.82024-06-11
CVE-2024-5833 [HIGH] Stable Channel Update for Desktop: CVE-2024-5833
Stable Channel Update for Desktop
CVE-2024-5833: Type Confusion in V8. Reported by @ginggilBesel on 2024-05-24 [$5000][ 342840932 ] High CVE-2024-5834: Inappropriate implementation in Dawn
Reported by gelatin dessert on 2024-05-26 [$3000][ 341991535 ] High CVE-2024-5835: Heap buffer overflow in Tab Groups
Severity: high
chrome
CVE-2024-5830HIGHCVSS 8.82024-06-11
CVE-2024-5830 [HIGH] Stable Channel Update for Desktop: CVE-2024-5830
Stable Channel Update for Desktop
CVE-2024-5830: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab on 2024-05-24 [$10000][ 339171223 ] High CVE-2024-5831: Use after free in Dawn
Reported by wgslfuzz on 2024-05-07 [$10000][ 340196361 ] High CVE-2024-5832: Use after free in Dawn
Severity: high
chrome
CVE-2024-5845MEDIUMCVSS 8.82024-06-11
CVE-2024-5845 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5845
Stable Channel Update for Desktop
CVE-2024-5845: Use after free in Audio. Reported by anonymous on 2024-05-13 [TBD][ 341095523 ] Medium CVE-2024-5846: Use after free in PDFium
Reported by Han Zheng (HexHive) on 2024-05-16 [TBD][ 341313077 ] Medium CVE-2024-5847: Use after free in PDFium
Severity: medium
chrome
CVE-2024-5842MEDIUMCVSS 8.82024-06-11
CVE-2024-5842 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5842
Stable Channel Update for Desktop
CVE-2024-5842: Use after free in Browser UI. Reported by Sven Dysthe (@svn_dy) on 2023-01-12 [$500][ 333940412 ] Medium CVE-2024-5843: Inappropriate implementation in Downloads
Reported by hjy79425575 on 2024-04-12 [TBD][ 331960660 ] Medium CVE-2024-5844: Heap buffer overflow in Tab Strip
Severity: medium
chrome
CVE-2024-5839MEDIUMCVSS 6.52024-06-11
CVE-2024-5839 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5839
Stable Channel Update for Desktop
CVE-2024-5839: Inappropriate Implementation in Memory Allocator. Reported by Micky on 2024-05-13 [$5000][ 41492103 ] Medium CVE-2024-5840: Policy Bypass in CORS
Reported by Matt Howard on 2024-01-17 [$2000][ 326765855 ] Medium CVE-2024-5841: Use after free in V8
Severity: medium
chrome
CVE-2024-5274CRITICALCVSS 9.6KEV2024-06-10
CVE-2024-5274 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-5274
Long Term Support Channel Update for ChromeOS
CVE-2024-5274
chrome
CVE-2024-5499HIGHCVSS 8.82024-06-10
CVE-2024-5499 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-5499
Long Term Support Channel Update for ChromeOS
CVE-2024-5499
chrome
CVE-2024-5158HIGHCVSS 8.12024-06-03
CVE-2024-5158 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-5158
Long Term Support Channel Update for ChromeOS
CVE-2024-5158
chrome
CVE-2024-4947CRITICALCVSS 9.6KEV2024-05-23
CVE-2024-4947 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-4947
Long Term Support Channel Update for ChromeOS
CVE-2024-4947
chrome
CVE-2024-4761HIGHCVSS 8.8KEV2024-05-23
CVE-2024-4761 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-4761
Long Term Support Channel Update for ChromeOS
CVE-2024-4761
chrome
CVE-2024-5160HIGHCVSS 8.82024-05-21
CVE-2024-5160 [HIGH] Stable Channel Update for Desktop: CVE-2024-5160
Stable Channel Update for Desktop
CVE-2024-5160: Heap buffer overflow in Dawn. Reported by wgslfuzz on 2024-05-01 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel
Severity: high
chrome
CVE-2024-5157HIGHCVSS 8.82024-05-21
CVE-2024-5157 [HIGH] Stable Channel Update for Desktop: CVE-2024-5157
Stable Channel Update for Desktop
CVE-2024-5157: Use after free in Scheduling. Reported by Looben Yang on 2024-04-21 [$10000][ 338908243 ] High CVE-2024-5158: Type Confusion in V8
Reported by Zhenghang Xiao (@Kipreyyy) on 2024-05-06 [$5000][ 335613092 ] High CVE-2024-5159: Heap buffer overflow in ANGLE
Severity: high
chrome
CVE-2024-4950LOWCVSS 9.62024-05-15
CVE-2024-4950 [LOW] Stable Channel Update for Desktop: CVE-2024-4950
Stable Channel Update for Desktop
CVE-2024-4950: Inappropriate implementation in Downloads. Reported by Shaheen Fazim on 2023-06-06 Google is aware that an exploit for CVE-2024-4947 exists in the wild
Severity: low
chrome
CVE-2024-4671CRITICALCVSS 9.6KEV2024-05-13
CVE-2024-4671 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-4671
Long Term Support Channel Update for ChromeOS
CVE-2024-4671
chrome
CVE-2024-21626HIGHCVSS 8.6PoC2024-05-13
CVE-2024-21626 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-21626
Long Term Support Channel Update for ChromeOS
CVE-2024-21626
chrome
CVE-2024-4331HIGHCVSS 8.82024-05-13
CVE-2024-4331 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-4331
Long Term Support Channel Update for ChromeOS
CVE-2024-4331
chrome
CVE-2024-24806HIGHCVSS 7.32024-05-13
CVE-2024-24806 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-24806
Long Term Support Channel Update for ChromeOS
CVE-2024-24806
chrome
CVE-2024-0409HIGHCVSS 7.82024-05-13
CVE-2024-0409 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-0409
Long Term Support Channel Update for ChromeOS
CVE-2024-0409
chrome
CVE-2024-4558HIGHCVSS 9.62024-05-07
CVE-2024-4558 [HIGH] Stable Channel Update for Desktop: CVE-2024-4558
Stable Channel Update for Desktop
CVE-2024-4558: Use after free in ANGLE. Reported by gelatin dessert on 2024-04-29 [TBD][ 331369797 ] High CVE-2024-4559: Heap buffer overflow in WebAudio
Reported by Cassidy Kim(@cassidy6564) on 2024-03-26 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel
Severity: high
chrome
CVE-2024-3832HIGHCVSS 8.82024-05-01
CVE-2024-3832 [HIGH] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-3832
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2024-3832: Object corruption in V8. Reported by Man Yue Mo of GitHub Security Lab on 2024-03-27 [$10000][ 331383939 ] High CVE-2024-3833: Object corruption in WebAssembly
Reported by Man Yue Mo of GitHub Security Lab on 2024-03-27 [N/A][ 330759272 ] High CVE-2024-3914: Use after free in V8
Severity: high
chrome