Chromium: CVE-2025-5281 Inappropriate implementation in BFCache
A double-free could have occurred in vpxcodecencinitmulti after a failed allocation when initializing the encoder for WebRTC. This could have caused memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 139, Firefox ESR < 115.24, and Firefox ESR < 128.11.
Chromium: CVE-2025-3620 Use after free in USB
Chromium: CVE-2025-4096 Heap buffer overflow in HTML
Chromium: CVE-2025-3619 Heap buffer overflow in Codecs
Chromium: CVE-2025-4050 Out of bounds memory access in DevTools
Chromium: CVE-2025-4051 Insufficient data validation in DevTools
Chromium: CVE-2025-4052 Inappropriate implementation in DevTools
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2025-21404.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2025-21404.
Chromium: CVE-2025-1426 Heap buffer overflow in GPU
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file while in Internet Explorer mode. The ZDI has assigned a CVSS rating of 7.5.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file while in Internet Explorer mode. The ZDI has assigned a CVSS rating of 7.5.
Chromium: CVE-2025-0999 Heap buffer overflow in V8
Chromium: CVE-2025-3074 Inappropriate implementation in Downloads
Chromium: CVE-2025-0445 Use after free in V8
Chromium: CVE -2025-0995 Use after free in V8
Chromium: CVE -2025-0996 Inappropriate implementation in Browser UI
Chromium: CVE -2025-0997 Use after free in Navigation
Chromium: CVE-2025-0612 Out of bounds memory access in V8
Chromium: CVE-2025-0444 Use after free in Skia
Chromium: CVE-2025-0438 Stack buffer overflow in Tracing
Chromium: CVE-2025-0437 Out of bounds read in Metrics
Chromium: CVE-2025-3073 Inappropriate implementation in Autofill
Chromium: CVE-2025-1921 Inappropriate Implementation in Media Stream
Chromium: CVE -2025-0998 Out of bounds memory access in V8
Chromium: CVE-2025-0611 Object corruption in V8