Vulnerabilities > Google > Chrome > High

DATE CVE VULNERABILITY TITLE RISK
2023-03-07 CVE-2023-1215 Type Confusion vulnerability in Google Chrome
Type confusion in CSS in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2023-03-07 CVE-2023-1216 Use After Free vulnerability in Google Chrome
Use after free in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had convienced the user to engage in direct UI interaction to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2023-03-07 CVE-2023-1218 Use After Free vulnerability in Google Chrome
Use after free in WebRTC in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2023-03-07 CVE-2023-1219 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in Metrics in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2023-03-07 CVE-2023-1220 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in UMA in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2023-03-07 CVE-2023-1222 Out-of-bounds Write vulnerability in Google Chrome
Heap buffer overflow in Web Audio API in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2023-03-07 CVE-2023-1227 Use After Free vulnerability in Google Chrome
Use after free in Core in Google Chrome on Lacros prior to 111.0.5563.64 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via crafted UI interaction.
network
low complexity
google CWE-416
8.8
2023-02-22 CVE-2023-0927 Use After Free vulnerability in Google Chrome
Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2023-02-22 CVE-2023-0928 Use After Free vulnerability in Google Chrome
Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2023-02-22 CVE-2023-0929 Use After Free vulnerability in Google Chrome
Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8