Vulnerabilities > Google > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-02-09 CVE-2021-21142 Use After Free vulnerability in multiple products
Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
critical
9.6
2021-02-09 CVE-2021-21132 Improper Restriction of Rendered UI Layers or Frames vulnerability in multiple products
Inappropriate implementation in DevTools in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted Chrome Extension.
network
low complexity
google microsoft CWE-1021
critical
9.6
2021-02-09 CVE-2021-21124 Use After Free vulnerability in multiple products
Potential user after free in Speech Recognizer in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google microsoft CWE-416
critical
9.6
2021-02-09 CVE-2021-21121 Use After Free vulnerability in multiple products
Use after free in Omnibox in Google Chrome on Linux prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google microsoft CWE-416
critical
9.6
2021-02-04 CVE-2021-26689 Use After Free vulnerability in Google Android
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software.
network
low complexity
google CWE-416
critical
9.8
2021-02-04 CVE-2021-26688 Unspecified vulnerability in Google Android 10.0
An issue was discovered on LG Wing mobile devices with Android OS 10 software.
network
low complexity
google
critical
9.8
2021-02-04 CVE-2021-26687 Unspecified vulnerability in Google Android
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software.
network
low complexity
google
critical
9.8
2021-01-14 CVE-2020-16045 Use After Free vulnerability in Google Chrome
Use after Free in Payments in Google Chrome on Android prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-416
critical
9.6
2021-01-11 CVE-2021-0316 Out-of-bounds Write vulnerability in Google Android
In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check.
network
low complexity
google CWE-787
critical
9.8
2021-01-11 CVE-2020-0471 Improper Input Validation vulnerability in Google Android
In reassemble_and_dispatch of packet_fragmenter.cc, there is a possible way to inject packets into an encrypted Bluetooth connection due to improper input validation.
network
low complexity
google CWE-20
critical
9.8