chromium vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<98.0.4758.102-r0
  • C
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
CVE-2022-0462

<98.0.4758.102-r0
  • H
Integer Overflow or Wraparound

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.82-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<93.0.4577.82-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<99.0.4844.84-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • M
Improper Restriction of Rendered UI Layers or Frames

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • C
CVE-2022-0466

<98.0.4758.102-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
CVE-2022-0461

<98.0.4758.102-r0
  • H
Out-of-Bounds

<93.0.4577.82-r0
  • L
CVE-2021-30631

<93.0.4577.82-r0
  • H
CVE-2022-0467

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • C
Use After Free

<93.0.4577.82-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • M
Improper Input Validation

<92.0.4515.107-r0
  • H
Use After Free

<93.0.4577.82-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • H
Use After Free

<93.0.4577.82-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
CVE-2021-30618

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Incorrect Authorization

<92.0.4515.107-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • M
CVE-2021-30617

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
CVE-2021-30620

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Read

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<93.0.4577.63-r0
  • M
Use After Free

<92.0.4515.159-r0
  • M
Origin Validation Error

<92.0.4515.159-r0
  • M
CVE-2021-30584

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use of Uninitialized Resource

<92.0.4515.107-r0
  • M
CVE-2021-30582

<92.0.4515.107-r0
  • M
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
CVE-2021-30587

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Race Condition

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.101-r0
  • C
Incorrect Authorization

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • H
Out-of-bounds Read

<91.0.4472.77-r0
  • H
Double Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Out-of-Bounds

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • H
Out-of-bounds Write

<91.0.4472.101-r0
  • M
Improper Input Validation

<91.0.4472.77-r0
  • M
Use of Uninitialized Resource

<90.0.4430.72-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
CVE-2021-21168

<89.0.4389.72-r0
  • M
CVE-2021-21173

<89.0.4389.72-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
CVE-2021-21170

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • M
Exposure of Resource to Wrong Sphere

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • H
CVE-2021-21205

<90.0.4430.72-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • M
CVE-2021-21212

<90.0.4430.72-r0
  • C
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
CVE-2021-21176

<89.0.4389.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.90-r0
  • H
Use After Free

<90.0.4430.72-r0
  • L
CVE-2021-21158

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • M
CVE-2021-21178

<89.0.4389.72-r0
  • H
CVE-2021-21174

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.114-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • M
CVE-2021-21171

<89.0.4389.72-r0
  • H
Improper Input Validation

<89.0.4389.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • M
CVE-2021-21185

<89.0.4389.72-r0
  • M
CVE-2021-21181

<89.0.4389.72-r0
  • M
CVE-2021-21187

<89.0.4389.72-r0
  • H
Use of Uninitialized Resource

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Out-of-Bounds

<89.0.4389.128-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.128-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
CVE-2021-21172

<89.0.4389.72-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.114-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Out-of-bounds Write

<103.0.5060.114-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • H
Out-of-bounds Read

<89.0.4389.114-r0
  • H
Out-of-bounds Write

<83.0.4103.116-r0
  • C
Use After Free

<83.0.4103.116-r0
  • H
Use After Free

<89.0.4389.72-r0
  • C
Use After Free

<83.0.4103.116-r0
  • H
CVE-2022-1874

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.114-r0
  • M
CVE-2022-2165

<103.0.5060.53-r0
  • M
Incorrect Authorization

<83.0.4103.116-r0
  • H
Out-of-bounds Write

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
CVE-2022-1867

<102.0.5005.61-r0
  • M
CVE-2022-1871

<102.0.5005.61-r0
  • M
Use After Free

<72.0.3626.121-r0
  • H
Use After Free

<103.0.5060.134-r0
  • M
Improper Input Validation

<103.0.5060.134-r0
  • M
CVE-2022-1862

<102.0.5005.61-r0
  • M
Out-of-bounds Read

<102.0.5005.61-r0
  • H
Out-of-bounds Write

<116.0.5845.187-r0
  • H
Use After Free

<103.0.5060.114-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<103.0.5060.114-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
CVE-2022-2162

<103.0.5060.53-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Race Condition

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
CVE-2022-1872

<102.0.5005.61-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
CVE-2022-1868

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • M
CVE-2022-2164

<103.0.5060.53-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<102.0.5005.61-r0
  • H
CVE-2022-1857

<102.0.5005.61-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.64-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • C
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Origin Validation Error

<101.0.4951.54-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<101.0.4951.54-r0
  • M
Authentication Bypass

<101.0.4951.54-r0
  • M
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Incorrect Authorization

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Improper Input Validation

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<100.0.4896.127-r0