webkit2gtk vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the webkit2gtk package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Cross-site Scripting (XSS)

<2.34.3-r0
  • H
Buffer Overflow

<2.34.4-r0
  • H
Out-of-bounds Read

<2.34.4-r0
  • M
CVE-2022-32816

<2.36.5-r0
  • M
Use After Free

<2.34.0-r0
  • H
Use After Free

<2.34.6-r0
  • H
Out-of-bounds Write

<2.36.5-r0
  • M
CVE-2021-30884

<2.34.0-r0
  • M
Use After Free

<2.32.4-r0
  • H
Out-of-bounds Write

<2.32.3-r0
  • M
Origin Validation Error

<2.34.4-r0
  • H
Use After Free

<2.34.6-r0
  • M
CVE-2022-22589

<2.34.6-r0
  • H
Use After Free

<2.32.4-r0
  • M
CVE-2021-30887

<2.34.3-r0
  • M
Memory Leak

<2.34.0-r0
  • H
Out-of-bounds Write

<2.34.0-r0
  • M
CVE-2021-1799

<2.30.6-r0
  • C
Improper Input Validation

<2.28.3-r0
  • H
Out-of-bounds Write

<2.32.4-r0
  • M
Cross-site Scripting (XSS)

<2.30.0-r0
  • H
Use After Free

<2.32.3-r0
  • M
Cross-site Scripting (XSS)

<2.32.3-r0
  • M
CVE-2020-9915

<2.28.4-r0
  • H
CVE-2020-9802

<2.28.3-r0
  • C
CVE-2021-1870

<2.30.6-r0
  • M
Exposure of Resource to Wrong Sphere

<2.30.0-r0
  • H
Out-of-bounds Write

<2.34.0-r0
  • C
CVE-2021-1871

<2.32.0-r0
  • H
Out-of-Bounds

<2.28.3-r0
  • M
Cross-site Scripting (XSS)

<2.26.1-r0
  • H
Out-of-Bounds

<2.26.1-r0
  • H
Out-of-Bounds

<2.28.3-r0
  • H
Use After Free

<2.30.3-r0
  • C
Improper Input Validation

<2.28.0-r0
  • H
Out-of-Bounds

<2.26.1-r0
  • M
CVE-2021-1801

<2.30.6-r0
  • H
Out-of-Bounds

<2.32.0-r0
  • H
Out-of-Bounds

<2.26.1-r0
  • H
Out-of-Bounds

<2.26.0-r0
  • M
Cross-site Scripting (XSS)

<2.24.4-r0
  • H
Cross-site Scripting (XSS)

<2.28.3-r0
  • H
Out-of-bounds Write

<2.30.3-r0
  • M
Cross-site Scripting (XSS)

<2.26.0-r0
  • M
Out-of-bounds Read

<2.28.4-r0
  • M
Cross-site Scripting (XSS)

<2.30.0-r0
  • M
Information Exposure

<2.24.4-r0
  • H
Use After Free

<2.28.1-r0
  • H
Out-of-Bounds

<2.26.1-r0
  • H
Use After Free

<2.32.0-r0
  • C
Use After Free

<2.28.4-r0
  • H
Out-of-Bounds

<2.26.2-r0
  • H
Out-of-bounds Write

<2.26.2-r0
  • H
Arbitrary Command Injection

<2.28.4-r0
  • H
Cross-site Scripting (XSS)

<2.28.3-r0
  • H
Out-of-Bounds

<2.26.0-r0
  • H
Out-of-bounds Write

<2.26.0-r0
  • H
Integer Overflow or Wraparound

<2.34.4-r0
  • H
Use After Free

<2.28.0-r0
  • H
Out-of-bounds Write

<2.26.1-r0
  • H
Out-of-Bounds

<2.26.0-r0
  • H
Out-of-Bounds

<2.24.3-r0
  • M
Cross-site Scripting (XSS)

<2.24.3-r0
  • M
Improper Restriction of Rendered UI Layers or Frames

<2.26.0-r0
  • H
Out-of-Bounds

<2.28.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.24.1-r0
  • H
Buffer Overflow

<2.26.0-r0
  • H
CVE-2022-22637

<2.34.4-r0
  • H
Out-of-bounds Write

<2.26.0-r0
  • H
CVE-2019-6251

<2.24.1-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.32.2-r0
  • M
CVE-2022-22592

<2.34.6-r0
  • H
Out-of-Bounds

<2.32.3-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.34.4-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.30.6-r0
  • M
CVE-2021-1765

<2.30.6-r0
  • H
Out-of-Bounds

<2.22.4-r0
  • H
Out-of-bounds Write

<2.22.7-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.22.7-r0
  • H
Out-of-Bounds

<2.18.4-r0
  • H
Use After Free

<2.32.3-r0
  • H
Use After Free

<2.30.5-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.30.6-r0
  • H
Use After Free

<2.30.3-r0
  • M
CVE-2021-30682

<2.32.0-r0
  • H
Use After Free

<2.30.0-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.34.4-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.30.0-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Out-of-Bounds

<2.18.4-r0
  • H
Out-of-Bounds

<2.18.4-r0
  • C
CVE-2020-9850

<2.28.3-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • H
Cross-site Scripting (XSS)

<2.28.3-r0
  • M
CVE-2022-22677

<2.36.4-r0
  • H
Out-of-bounds Write

<2.36.1-r0
  • H
Use After Free

<2.24.4-r0
  • H
Out-of-Bounds

<2.26.0-r0
  • H
Use After Free

<2.28.4-r0
  • H
Use After Free

<2.24.3-r0
  • H
Use After Free

<2.36.0-r0
  • H
Out-of-Bounds

<2.26.1-r0
  • M
CVE-2021-42762

<2.34.1-r0
  • H
Out-of-Bounds

<2.24.4-r0
  • H
Out-of-bounds Write

<2.36.5-r0
  • H
Out-of-Bounds

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • M
CVE-2021-30897

<2.34.0-r0
  • H
Use After Free

<2.24.3-r0
  • C
Use After Free

<2.36.1-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.24.1-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.32.4-r0
  • H
Use After Free

<2.24.2-r0
  • M
Improper Data Handling

<2.24.1-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<2.34.0-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • M
Cross-site Scripting (XSS)

<2.22.7-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • H
Out-of-bounds Write

<2.32.3-r0
  • H
Integer Overflow or Wraparound

<2.32.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.30.6-r0
  • H
Out-of-Bounds

<2.22.7-r0
  • H
Out-of-Bounds

<2.18.4-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • M
CVE-2021-30823

<2.34.0-r0
  • H
Buffer Overflow

<2.34.0-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • M
Cross-site Scripting (XSS)

<2.24.1-r0
  • M
Information Exposure

<2.14.5-r0
  • M
Cross-site Scripting (XSS)

<2.28.4-r0
  • H
Use After Free

<2.36.0-r0
  • M
Cross-site Scripting (XSS)

<2.32.3-r0
  • M
CVE-2022-22710

<2.36.4-r0
  • M
Information Exposure

<2.14.5-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • H
Out-of-bounds Write

<2.36.0-r0
  • H
Use After Free

<2.34.4-r0
  • H
Race Condition

<2.34.4-r0
  • H
Out-of-Bounds

<2.26.0-r0
  • H
Open Redirect

<2.34.0-r0
  • H
Out-of-bounds Write

<2.32.3-r0
  • M
Out-of-bounds Read

<2.32.4-r0
  • M
Information Exposure

<2.26.0-r0
  • M
Improper Authentication

<2.32.3-r0
  • H
Out-of-bounds Write

<2.32.4-r0
  • H
Use After Free

<2.32.3-r0
  • L
CVE-2020-29623

<2.30.6-r0
  • M
Cross-site Scripting (XSS)

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Use After Free

<2.30.0-r0
  • H
Use After Free

<2.30.5-r0
  • H
Use After Free

<2.26.3-r0
  • M
Cross-site Scripting (XSS)

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • H
Out-of-bounds Write

<2.30.0-r0
  • H
CVE-2021-30797

<2.32.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Out-of-bounds Write

<2.26.3-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • M
Cross-site Scripting (XSS)

<2.26.0-r0
  • H
Out-of-bounds Write

<2.26.3-r0
  • H
Out-of-Bounds

<2.24.4-r0
  • H
Out-of-bounds Write

<2.24.1-r0
  • H
Out-of-Bounds

<2.24.4-r0
  • M
Improper Input Validation

<2.14.5-r0
  • M
Cross-site Scripting (XSS)

<2.24.4-r0
  • H
Out-of-Bounds

<2.24.3-r0
  • H
Use After Free

<2.24.3-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • H
Out-of-Bounds

<2.24.4-r0
  • H
Out-of-Bounds

<2.24.4-r0
  • H
Out-of-bounds Write

<2.24.3-r0
  • M
Information Exposure

<2.14.5-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • H
Out-of-bounds Write

<2.22.7-r0
  • H
Out-of-Bounds

<2.18.4-r0
  • M
Information Exposure

<2.14.5-r0
  • H
Out-of-Bounds

<2.14.5-r0
  • H
Out-of-bounds Write

<2.22.7-r0
  • H
Out-of-bounds Write

<2.22.7-r0
  • H
Out-of-Bounds

<2.14.5-r0