Vulnerabilities > Google > Chrome > 106.0.5207.1

DATE CVE VULNERABILITY TITLE RISK
2022-11-09 CVE-2022-3446 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in WebSQL in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2022-11-09 CVE-2022-3447 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 106.0.5249.119 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google
4.3
2022-11-09 CVE-2022-3448 Use After Free vulnerability in Google Chrome
Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3449 Use After Free vulnerability in Google Chrome
Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3450 Use After Free vulnerability in Google Chrome
Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3885 Use After Free vulnerability in multiple products
Use after free in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8
2022-11-09 CVE-2022-3886 Use After Free vulnerability in multiple products
Use after free in Speech Recognition in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8
2022-11-09 CVE-2022-3887 Use After Free vulnerability in multiple products
Use after free in Web Workers in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8
2022-11-09 CVE-2022-3888 Use After Free vulnerability in multiple products
Use after free in WebCodecs in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8
2022-11-09 CVE-2022-3889 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-843
8.8