Vulnerabilities > Google > Chrome > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-29 CVE-2022-4915 Unspecified vulnerability in Google Chrome
Inappropriate implementation in URL Formatting in Google Chrome prior to 103.0.5060.134 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
network
low complexity
google
6.5
2023-07-29 CVE-2022-4917 Incorrect security UI in Notifications in Google Chrome on Android prior to 103.0.5060.53 allowed a remote attacker to obscure the full screen notification via a crafted HTML page.
network
low complexity
google fedoraproject
4.3
2023-07-29 CVE-2022-4922 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Blink in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to perform UI spoofing via a crafted HTML page.
network
low complexity
google
6.5
2023-07-29 CVE-2022-4925 Improper Input Validation vulnerability in Google Chrome
Insufficient validation of untrusted input in QUIC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to perform header splitting via malicious network traffic.
network
low complexity
google CWE-20
6.5
2023-07-29 CVE-2022-4926 Insufficient policy enforcement in Intents in Google Chrome on Android prior to 109.0.5414.119 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
network
low complexity
google fedoraproject
6.5
2023-07-29 CVE-2023-2311 Unspecified vulnerability in Google Chrome
Insufficient policy enforcement in File System API in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
network
low complexity
google
6.5
2023-07-29 CVE-2023-2314 Insufficient Verification of Data Authenticity vulnerability in Google Chrome
Insufficient data validation in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
network
low complexity
google CWE-345
6.5
2023-07-03 CVE-2023-3497 Out-of-bounds Read vulnerability in Google Chrome
Out of bounds read in Google Security Processor firmware in Google Chrome on Chrome OS prior to 114.0.5735.90 allowed a local attacker to perform denial of service via physical access to the device.
low complexity
google CWE-125
4.6
2023-05-30 CVE-2023-2937 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google
4.3
2023-05-30 CVE-2023-2938 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google
4.3