Google Chrome Chrome vulnerabilities

1,139 known vulnerabilities affecting google/chrome_chrome.

Total CVEs
1,139
CISA KEV
47
actively exploited
Public exploits
9
Exploited in wild
36
Severity breakdown
CRITICAL58HIGH621MEDIUM339LOW104UNKNOWN17

Vulnerabilities

Page 21 of 57
CVE-2024-5833HIGHCVSS 8.82024-06-11
CVE-2024-5833 [HIGH] Stable Channel Update for Desktop: CVE-2024-5833 Stable Channel Update for Desktop CVE-2024-5833: Type Confusion in V8. Reported by @ginggilBesel on 2024-05-24 [$5000][ 342840932 ] High CVE-2024-5834: Inappropriate implementation in Dawn Reported by gelatin dessert on 2024-05-26 [$3000][ 341991535 ] High CVE-2024-5835: Heap buffer overflow in Tab Groups Severity: high
chrome
CVE-2024-5830HIGHCVSS 8.82024-06-11
CVE-2024-5830 [HIGH] Stable Channel Update for Desktop: CVE-2024-5830 Stable Channel Update for Desktop CVE-2024-5830: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab on 2024-05-24 [$10000][ 339171223 ] High CVE-2024-5831: Use after free in Dawn Reported by wgslfuzz on 2024-05-07 [$10000][ 340196361 ] High CVE-2024-5832: Use after free in Dawn Severity: high
chrome
CVE-2024-5845MEDIUMCVSS 8.82024-06-11
CVE-2024-5845 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5845 Stable Channel Update for Desktop CVE-2024-5845: Use after free in Audio. Reported by anonymous on 2024-05-13 [TBD][ 341095523 ] Medium CVE-2024-5846: Use after free in PDFium Reported by Han Zheng (HexHive) on 2024-05-16 [TBD][ 341313077 ] Medium CVE-2024-5847: Use after free in PDFium Severity: medium
chrome
CVE-2024-5842MEDIUMCVSS 8.82024-06-11
CVE-2024-5842 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5842 Stable Channel Update for Desktop CVE-2024-5842: Use after free in Browser UI. Reported by Sven Dysthe (@svn_dy) on 2023-01-12 [$500][ 333940412 ] Medium CVE-2024-5843: Inappropriate implementation in Downloads Reported by hjy79425575 on 2024-04-12 [TBD][ 331960660 ] Medium CVE-2024-5844: Heap buffer overflow in Tab Strip Severity: medium
chrome
CVE-2024-5839MEDIUMCVSS 6.52024-06-11
CVE-2024-5839 [MEDIUM] Stable Channel Update for Desktop: CVE-2024-5839 Stable Channel Update for Desktop CVE-2024-5839: Inappropriate Implementation in Memory Allocator. Reported by Micky on 2024-05-13 [$5000][ 41492103 ] Medium CVE-2024-5840: Policy Bypass in CORS Reported by Matt Howard on 2024-01-17 [$2000][ 326765855 ] Medium CVE-2024-5841: Use after free in V8 Severity: medium
chrome
CVE-2024-5274CRITICALCVSS 9.6KEV2024-06-10
CVE-2024-5274 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-5274 Long Term Support Channel Update for ChromeOS CVE-2024-5274
chrome
CVE-2024-5499HIGHCVSS 8.82024-06-10
CVE-2024-5499 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-5499 Long Term Support Channel Update for ChromeOS CVE-2024-5499
chrome
CVE-2024-5158HIGHCVSS 8.12024-06-03
CVE-2024-5158 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-5158 Long Term Support Channel Update for ChromeOS CVE-2024-5158
chrome
CVE-2024-4947CRITICALCVSS 9.6KEV2024-05-23
CVE-2024-4947 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-4947 Long Term Support Channel Update for ChromeOS CVE-2024-4947
chrome
CVE-2024-4761HIGHCVSS 8.8KEV2024-05-23
CVE-2024-4761 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-4761 Long Term Support Channel Update for ChromeOS CVE-2024-4761
chrome
CVE-2024-5160HIGHCVSS 8.82024-05-21
CVE-2024-5160 [HIGH] Stable Channel Update for Desktop: CVE-2024-5160 Stable Channel Update for Desktop CVE-2024-5160: Heap buffer overflow in Dawn. Reported by wgslfuzz on 2024-05-01 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel Severity: high
chrome
CVE-2024-5157HIGHCVSS 8.82024-05-21
CVE-2024-5157 [HIGH] Stable Channel Update for Desktop: CVE-2024-5157 Stable Channel Update for Desktop CVE-2024-5157: Use after free in Scheduling. Reported by Looben Yang on 2024-04-21 [$10000][ 338908243 ] High CVE-2024-5158: Type Confusion in V8 Reported by Zhenghang Xiao (@Kipreyyy) on 2024-05-06 [$5000][ 335613092 ] High CVE-2024-5159: Heap buffer overflow in ANGLE Severity: high
chrome
CVE-2024-4950LOWCVSS 9.62024-05-15
CVE-2024-4950 [LOW] Stable Channel Update for Desktop: CVE-2024-4950 Stable Channel Update for Desktop CVE-2024-4950: Inappropriate implementation in Downloads. Reported by Shaheen Fazim on 2023-06-06 Google is aware that an exploit for CVE-2024-4947 exists in the wild Severity: low
chrome
CVE-2024-4671CRITICALCVSS 9.6KEV2024-05-13
CVE-2024-4671 [CRITICAL] Long Term Support Channel Update for ChromeOS: CVE-2024-4671 Long Term Support Channel Update for ChromeOS CVE-2024-4671
chrome
CVE-2024-21626HIGHCVSS 8.6PoC2024-05-13
CVE-2024-21626 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-21626 Long Term Support Channel Update for ChromeOS CVE-2024-21626
chrome
CVE-2024-4331HIGHCVSS 8.82024-05-13
CVE-2024-4331 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-4331 Long Term Support Channel Update for ChromeOS CVE-2024-4331
chrome
CVE-2024-24806HIGHCVSS 7.32024-05-13
CVE-2024-24806 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-24806 Long Term Support Channel Update for ChromeOS CVE-2024-24806
chrome
CVE-2024-0409HIGHCVSS 7.82024-05-13
CVE-2024-0409 [HIGH] Long Term Support Channel Update for ChromeOS: CVE-2024-0409 Long Term Support Channel Update for ChromeOS CVE-2024-0409
chrome
CVE-2024-4558HIGHCVSS 9.62024-05-07
CVE-2024-4558 [HIGH] Stable Channel Update for Desktop: CVE-2024-4558 Stable Channel Update for Desktop CVE-2024-4558: Use after free in ANGLE. Reported by gelatin dessert on 2024-04-29 [TBD][ 331369797 ] High CVE-2024-4559: Heap buffer overflow in WebAudio Reported by Cassidy Kim(@cassidy6564) on 2024-03-26 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel Severity: high
chrome
CVE-2024-3832HIGHCVSS 8.82024-05-01
CVE-2024-3832 [HIGH] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2024-3832 Stable Channel Update for ChromeOS / ChromeOS Flex CVE-2024-3832: Object corruption in V8. Reported by Man Yue Mo of GitHub Security Lab on 2024-03-27 [$10000][ 331383939 ] High CVE-2024-3833: Object corruption in WebAssembly Reported by Man Yue Mo of GitHub Security Lab on 2024-03-27 [N/A][ 330759272 ] High CVE-2024-3914: Use after free in V8 Severity: high
chrome