chromium vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Integer Overflow or Wraparound

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<99.0.4844.84-r0
  • H
CVE-2022-0467

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
Improper Restriction of Rendered UI Layers or Frames

<98.0.4758.102-r0
  • M
CVE-2022-0461

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • C
Use After Free

<98.0.4758.102-r0
  • C
CVE-2022-0466

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.82-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<93.0.4577.82-r0
  • L
CVE-2021-30631

<93.0.4577.82-r0
  • H
Use After Free

<93.0.4577.82-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
CVE-2022-0462

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.63-r0
  • C
Use After Free

<93.0.4577.82-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.63-r0
  • M
CVE-2021-30617

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
CVE-2021-30618

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.82-r0
  • H
Race Condition

<92.0.4515.159-r0
  • H
Out-of-Bounds

<93.0.4577.82-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • M
Origin Validation Error

<92.0.4515.159-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Use After Free

<92.0.4515.159-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
CVE-2021-30582

<92.0.4515.107-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • C
Incorrect Authorization

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
CVE-2021-30620

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • M
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • M
Improper Input Validation

<92.0.4515.107-r0
  • H
Incorrect Authorization

<92.0.4515.107-r0
  • H
Out-of-bounds Read

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • M
Improper Input Validation

<91.0.4472.77-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Out-of-Bounds

<91.0.4472.77-r0
  • M
CVE-2021-30584

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use of Uninitialized Resource

<92.0.4515.107-r0
  • H
Double Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • M
CVE-2021-30587

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Out-of-bounds Read

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • C
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.114-r0
  • M
Exposure of Resource to Wrong Sphere

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Out-of-bounds Write

<91.0.4472.101-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • H
Out-of-bounds Write

<89.0.4389.90-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • M
CVE-2021-21212

<90.0.4430.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
CVE-2021-21181

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • M
Use of Uninitialized Resource

<90.0.4430.72-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • M
CVE-2021-21170

<89.0.4389.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • L
CVE-2021-21158

<89.0.4389.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • H
CVE-2021-21205

<90.0.4430.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • H
CVE-2021-21174

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Use of Uninitialized Resource

<89.0.4389.72-r0
  • H
Improper Input Validation

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • M
CVE-2021-21187

<89.0.4389.72-r0
  • M
CVE-2021-21171

<89.0.4389.72-r0
  • M
CVE-2021-21178

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • M
CVE-2021-21168

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • H
CVE-2021-21172

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
CVE-2021-21173

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.114-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • M
CVE-2021-21185

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • H
Out-of-Bounds

<89.0.4389.128-r0
  • M
CVE-2021-21176

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Out-of-bounds Read

<89.0.4389.114-r0
  • M
Incorrect Authorization

<83.0.4103.116-r0
  • H
CVE-2022-2162

<103.0.5060.53-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.114-r0
  • C
Use After Free

<83.0.4103.116-r0
  • H
Out-of-bounds Write

<83.0.4103.116-r0
  • M
Use After Free

<72.0.3626.121-r0
  • H
Use After Free

<89.0.4389.114-r0
  • H
Use After Free

<89.0.4389.128-r0
  • M
Race Condition

<103.0.5060.53-r0
  • H
Use After Free

<103.0.5060.53-r0
  • C
Use After Free

<83.0.4103.116-r0
  • H
Out-of-bounds Write

<116.0.5845.187-r0
  • M
CVE-2022-2165

<103.0.5060.53-r0
  • H
Out-of-bounds Write

<103.0.5060.114-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<103.0.5060.114-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<103.0.5060.114-r0
  • M
CVE-2022-2164

<103.0.5060.53-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.134-r0
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<102.0.5005.61-r0
  • M
CVE-2022-1862

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
Improper Input Validation

<103.0.5060.134-r0
  • M
Out-of-bounds Read

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Out-of-bounds Write

<102.0.5005.61-r0
  • M
CVE-2022-1872

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • M
CVE-2022-1871

<102.0.5005.61-r0
  • H
CVE-2022-1874

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • M
CVE-2022-1868

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.64-r0
  • M
CVE-2022-1867

<102.0.5005.61-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
CVE-2022-1857

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • C
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • M
Incorrect Authorization

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • M
Improper Input Validation

<101.0.4951.54-r0
  • M
Authentication Bypass

<101.0.4951.54-r0
  • M
Origin Validation Error

<101.0.4951.54-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<100.0.4896.127-r0