cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2016-5181,https://securityvulnerability.io/vulnerability/CVE-2016-5181,,"Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android permitted execution of v8 microtasks while the DOM was in an inconsistent state, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via crafted HTML pages.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",6.1,MEDIUM,0.010900000110268593,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5182,https://securityvulnerability.io/vulnerability/CVE-2016-5182,,"Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android had insufficient validation in bitmap handling, which allowed a remote attacker to potentially exploit heap corruption via crafted HTML pages.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",8.8,HIGH,0.014460000209510326,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5183,https://securityvulnerability.io/vulnerability/CVE-2016-5183,,"A heap use after free in PDFium in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android allows a remote attacker to potentially exploit heap corruption via crafted PDF files.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",8.8,HIGH,0.012980000115931034,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5184,https://securityvulnerability.io/vulnerability/CVE-2016-5184,,"PDFium in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly handled object lifecycles in CFFL_FormFillter::KillFocusForAnnot, which allowed a remote attacker to potentially exploit heap corruption via crafted PDF files.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",8.8,HIGH,0.00901000015437603,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5185,https://securityvulnerability.io/vulnerability/CVE-2016-5185,,"Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly allowed reentrance of FrameView::updateLifecyclePhasesInternal(), which allowed a remote attacker to perform an out of bounds memory read via crafted HTML pages.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",8.8,HIGH,0.00901000015437603,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5186,https://securityvulnerability.io/vulnerability/CVE-2016-5186,,"Devtools in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly handled objects after a tab crash, which allowed a remote attacker to perform an out of bounds memory read via crafted PDF files.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",5.3,MEDIUM,0.005280000157654285,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5189,https://securityvulnerability.io/vulnerability/CVE-2016-5189,,"Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android permitted navigation to blob URLs with non-canonical origins, which allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via crafted HTML pages.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",6.5,MEDIUM,0.005249999929219484,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5190,https://securityvulnerability.io/vulnerability/CVE-2016-5190,,"Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly handled object lifecycles during shutdown, which allowed a remote attacker to perform an out of bounds memory read via crafted HTML pages.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",6.3,MEDIUM,0.005810000002384186,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0 CVE-2016-5191,https://securityvulnerability.io/vulnerability/CVE-2016-5191,,"Bookmark handling in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android had insufficient validation of supplied data, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via crafted HTML pages, as demonstrated by an interpretation conflict between userinfo and scheme in an http://javascript:payload@example.com URL.",Google,"Chrome Prior To 54.0.2840.59 For Windows, Mac, And Linux; 54.0.2840.85 For Android",6.1,MEDIUM,0.003169999923557043,false,false,false,false,,false,false,2016-12-18T03:34:00.000Z,0