cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2017-5113,https://securityvulnerability.io/vulnerability/CVE-2017-5113,Heap Corruption Vulnerability in Google Chrome Affecting Multiple Platforms,"A math overflow vulnerability in the Skia graphics library used by Google Chrome allows malicious actors to manipulate memory, leading to heap corruption when handling specially crafted HTML content. This flaw affects various platforms including Mac, Windows, Linux, and Android, enabling potential remote attacks that can compromise user security. Users are advised to update their browsers to the latest versions to mitigate any risks associated with this vulnerability.",Google,"Google Chrome Prior To 61.0.3163.79 For Mac, Windows And Linux, And 61.0.3163.81 For Android",8.8,HIGH,0.020409999415278435,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0 CVE-2017-5114,https://securityvulnerability.io/vulnerability/CVE-2017-5114,Memory Corruption Vulnerability in PDFium of Google Chrome,"A memory corruption vulnerability exists in the PDFium component of Google Chrome, prior to version 61.0.3163.79 on Linux, Windows, and Mac, as well as version 61.0.3163.81 on Android. This flaw can be exploited by remote attackers through a specially crafted PDF file, potentially allowing them to manipulate memory and execute arbitrary code, posing a significant risk to users.",Google,"Google Chrome Prior To 61.0.3163.79 For Linux, Windows And Mac, And 61.0.3163.81 For Android",8.8,HIGH,0.014829999767243862,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0 CVE-2017-5119,https://securityvulnerability.io/vulnerability/CVE-2017-5119,Uninitialized Value Vulnerability in Google Chrome Affects Multiple Platforms,"A vulnerability exists in Google Chrome's Skia graphics library, where the use of an uninitialized value can be exploited. This issue enables remote attackers to potentially access sensitive information from the process memory by crafting a malicious HTML page. This flaw affects multiple operating systems, including Mac, Windows, Linux, and Android, prior to specified versions. Users are strongly advised to update their browsers to the latest versions to safeguard against this risk.",Google,"Google Chrome Prior To 61.0.3163.79 For Mac, Windows And Linux, And 61.0.3163.81 For Android",4.3,MEDIUM,0.01271000038832426,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0 CVE-2017-5120,https://securityvulnerability.io/vulnerability/CVE-2017-5120,Inadequate Redirect Handling in Google Chrome Affects Multiple Platforms,"The vulnerability arises from a flaw in the handling of www mismatch redirects during browser navigation in Google Chrome versions prior to 61.0.3163.79 for desktop platforms and prior to 61.0.3163.81 for Android. This misimplementation allows an attacker to potentially downgrade secure HTTPS requests to insecure HTTP by leveraging crafted HTML pages. Consequently, even if a user enters an https URL, the browser may transmit sensitive information in cleartext due to unintended behavior with domain name comparisons against X.509 server certificates.",Google,"Google Chrome Prior To 61.0.3163.79 For Mac, Windows And Linux, And 61.0.3163.81 For Android",6.5,MEDIUM,0.006909999996423721,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0 CVE-2017-5118,https://securityvulnerability.io/vulnerability/CVE-2017-5118,Content Security Policy Bypass in Google Chrome,"A vulnerability was identified in Google Chrome's Blink engine, which failed to correctly enforce Content Security Policy (CSP) restrictions on JavaScript scheme pages. This flaw allowed remote attackers to exploit the weakness using specially crafted HTML pages, potentially enabling unauthorized access to sensitive resources and data. Users are urged to upgrade to the latest version of Google Chrome to mitigate the risk associated with this issue.",Google,"Google Chrome Prior To 61.0.3163.79 For Mac, Windows And Linux, And 61.0.3163.81 For Android",4.3,MEDIUM,0.006560000125318766,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0 CVE-2017-5116,https://securityvulnerability.io/vulnerability/CVE-2017-5116,Type Confusion Vulnerability in Google Chrome for Multiple Platforms,"A type confusion vulnerability exists in the V8 JavaScript engine of Google Chrome prior to version 61.0.3163.79 for Mac, Windows, and Linux, and version 61.0.3163.81 for Android. This flaw can be exploited by a remote attacker to execute arbitrary code within a sandboxed environment by delivering a specially crafted HTML page. This vulnerability underscores the importance of keeping web browsers updated to mitigate potential risks associated with online threats.",Google,"Google Chrome Prior To 61.0.3163.79 For Mac, Windows And Linux, And 61.0.3163.81 For Android",8.8,HIGH,0.10627000033855438,false,,false,false,false,,,false,false,,2017-10-27T05:00:00.000Z,0