Google Chrome Chrome vulnerabilities

1,139 known vulnerabilities affecting google/chrome_chrome.

Total CVEs
1,139
CISA KEV
47
actively exploited
Public exploits
9
Exploited in wild
36
Severity breakdown
CRITICAL58HIGH621MEDIUM339LOW104UNKNOWN17

Vulnerabilities

Page 37 of 57
CVE-2022-2998HIGHCVSS 8.82022-09-09
CVE-2022-2998 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2998 Long Term Support Candidate Channel for ChromeOS CVE-2022-2998
chrome
CVE-2022-3039HIGHCVSS 8.82022-09-09
CVE-2022-3039 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-3039 Long Term Support Candidate Channel for ChromeOS CVE-2022-3039
chrome
CVE-2022-2620HIGHCVSS 8.82022-09-09
CVE-2022-2620 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2620 Long Term Support Candidate Channel for ChromeOS CVE-2022-2620
chrome
CVE-2022-2621HIGHCVSS 8.82022-09-09
CVE-2022-2621 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2621 Long Term Support Candidate Channel for ChromeOS CVE-2022-2621
chrome
CVE-2022-2624HIGHCVSS 8.82022-09-09
CVE-2022-2624 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2624 Long Term Support Candidate Channel for ChromeOS CVE-2022-2624
chrome
CVE-2022-2296HIGHCVSS 8.82022-09-09
CVE-2022-2296 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2296 Long Term Support Candidate Channel for ChromeOS CVE-2022-2296
chrome
CVE-2022-2607HIGHCVSS 8.82022-09-09
CVE-2022-2607 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2607 Long Term Support Candidate Channel for ChromeOS CVE-2022-2607
chrome
CVE-2022-2859HIGHCVSS 8.82022-09-09
CVE-2022-2859 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2859 Long Term Support Candidate Channel for ChromeOS CVE-2022-2859
chrome
CVE-2022-2609HIGHCVSS 8.82022-09-09
CVE-2022-2609 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2609 Long Term Support Candidate Channel for ChromeOS CVE-2022-2609
chrome
CVE-2022-3046HIGHCVSS 8.82022-09-09
CVE-2022-3046 [HIGH] Long Term Support Candidate Channel for ChromeOS: CVE-2022-3046 Long Term Support Candidate Channel for ChromeOS CVE-2022-3046
chrome
CVE-2022-2615MEDIUMCVSS 6.52022-09-09
CVE-2022-2615 [MEDIUM] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2615 Long Term Support Candidate Channel for ChromeOS CVE-2022-2615
chrome
CVE-2022-2860MEDIUMCVSS 6.52022-09-09
CVE-2022-2860 [MEDIUM] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2860 Long Term Support Candidate Channel for ChromeOS CVE-2022-2860
chrome
CVE-2022-2861MEDIUMCVSS 6.52022-09-09
CVE-2022-2861 [MEDIUM] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2861 Long Term Support Candidate Channel for ChromeOS CVE-2022-2861
chrome
CVE-2022-2612MEDIUMCVSS 6.52022-09-09
CVE-2022-2612 [MEDIUM] Long Term Support Candidate Channel for ChromeOS: CVE-2022-2612 Long Term Support Candidate Channel for ChromeOS CVE-2022-2612
chrome
CVE-2022-3040HIGHCVSS 8.82022-08-30
CVE-2022-3040 [HIGH] Stable Channel Update for Desktop: CVE-2022-3040 Stable Channel Update for Desktop CVE-2022-3040: Use after free in Layout. Reported by Anonymous on 2022-07-03 [$7500][ 1345947 ] High CVE-2022-3041: Use after free in WebSQL Reported by Ziling Chen and Nan Wang(@eternalsakura13) of 360 Vulnerability Research Institute on 2022-07-20 [$5000][ 1338553 ] High CVE-2022-3042: Use after free in PhoneHub Severity: high
chrome
CVE-2022-3043HIGHCVSS 8.82022-08-30
CVE-2022-3043 [HIGH] Stable Channel Update for Desktop: CVE-2022-3043 Stable Channel Update for Desktop CVE-2022-3043: Heap buffer overflow in Screen Capture. Reported by @ginggilBesel on 2022-06-16 [$NA][ 1051198 ] High CVE-2022-3044: Inappropriate implementation in Site Isolation Reported by Lucas Pinheiro, Microsoft Browser Vulnerability Research on 2020-02-12 [$TBD][ 1339648 ] High CVE-2022-3045: Insufficient validation of untrusted input in V8 Severity: high
chrome
CVE-2022-3055MEDIUMCVSS 8.82022-08-30
CVE-2022-3055 [MEDIUM] Stable Channel Update for Desktop: CVE-2022-3055 Stable Channel Update for Desktop CVE-2022-3055: Use after free in Passwords. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute on 2022-08-11 [$3000][ 1329460 ] Low CVE-2022-3056: Insufficient policy enforcement in Content Security Policy Reported by Anonymous on 2022-05-26 [$2000][ 1336904 ] Low CVE-2022-3057: Inappropriate implementation in iframe Sandbox Severity: medium
chrome
CVE-2022-3049MEDIUMCVSS 8.82022-08-30
CVE-2022-3049 [MEDIUM] Stable Channel Update for Desktop: CVE-2022-3049 Stable Channel Update for Desktop CVE-2022-3049: Use after free in SplitScreen. Reported by @ginggilBesel on 2022-04-17 [$3000][ 1337132 ] Medium CVE-2022-3050: Heap buffer overflow in WebUI Reported by Zhihua Yao of KunLun Lab on 2022-06-17 [$2000][ 1345245 ] Medium CVE-2022-3051: Heap buffer overflow in Exosphere Severity: medium
chrome
CVE-2022-3047MEDIUMCVSS 6.52022-08-30
CVE-2022-3047 [MEDIUM] Stable Channel Update for Desktop: CVE-2022-3047 Stable Channel Update for Desktop CVE-2022-3047: Insufficient policy enforcement in Extensions API. Reported by Maurice Dauer on 2022-07-07 [$5000][ 1303308 ] Medium CVE-2022-3048: Inappropriate implementation in Chrome OS lockscreen Reported by Andr Severity: medium
chrome
CVE-2022-3058LOWCVSS 8.82022-08-30
CVE-2022-3058 [LOW] Stable Channel Update for Desktop: CVE-2022-3058 Stable Channel Update for Desktop CVE-2022-3058: Use after free in Sign-In Flow. Reported by raven at KunLun lab on 2022-06-20 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel Severity: low
chrome