chromium vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the chromium package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<99.0.4844.84-r0
  • M
CVE-2022-0461

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
Improper Restriction of Rendered UI Layers or Frames

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • C
CVE-2022-0466

<98.0.4758.102-r0
  • H
CVE-2022-0467

<98.0.4758.102-r0
  • C
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • M
CVE-2022-0462

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Integer Overflow or Wraparound

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • H
Out-of-bounds Write

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Use After Free

<98.0.4758.102-r0
  • H
Out-of-bounds Write

<93.0.4577.82-r0
  • H
Out-of-Bounds

<93.0.4577.82-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<93.0.4577.82-r0
  • H
Use After Free

<98.0.4758.102-r0
  • L
CVE-2021-30631

<93.0.4577.82-r0
  • H
Use After Free

<93.0.4577.82-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.82-r0
  • H
Use After Free

<98.0.4758.102-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.82-r0
  • C
Use After Free

<93.0.4577.82-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
CVE-2021-30618

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • M
Exposure of Resource to Wrong Sphere

<93.0.4577.63-r0
  • M
CVE-2021-30617

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
CVE-2021-30620

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • M
Authentication Bypass

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Out-of-bounds Read

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<93.0.4577.63-r0
  • H
Use After Free

<93.0.4577.63-r0
  • H
Out-of-bounds Write

<92.0.4515.159-r0
  • M
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.159-r0
  • M
Use After Free

<92.0.4515.159-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Race Condition

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.159-r0
  • M
CVE-2021-30584

<92.0.4515.107-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • H
Use of Uninitialized Resource

<92.0.4515.107-r0
  • M
Origin Validation Error

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
CVE-2021-30582

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • H
Incorrect Authorization

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.159-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.159-r0
  • M
Improper Input Validation

<92.0.4515.107-r0
  • C
Incorrect Authorization

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<92.0.4515.107-r0
  • M
CVE-2021-30587

<92.0.4515.107-r0
  • H
Use After Free

<92.0.4515.107-r0
  • M
Incorrect Authorization

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Improper Input Validation

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Out-of-bounds Read

<91.0.4472.77-r0
  • H
Out-of-bounds Write

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • H
Double Free

<91.0.4472.77-r0
  • H
Out-of-Bounds

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.164-r0
  • H
Use After Free

<92.0.4515.107-r0
  • H
Use After Free

<91.0.4472.114-r0
  • M
Incorrect Authorization

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.114-r0
  • H
Use After Free

<91.0.4472.77-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Out-of-bounds Write

<91.0.4472.77-r0
  • M
CVE-2021-21212

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Out-of-bounds Write

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.164-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<90.0.4430.72-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • H
Out-of-bounds Write

<91.0.4472.164-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<91.0.4472.101-r0
  • H
Use After Free

<91.0.4472.101-r0
  • H
Use After Free

<90.0.4430.72-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • H
Use After Free

<91.0.4472.101-r0
  • M
Exposure of Resource to Wrong Sphere

<90.0.4430.72-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • M
Use of Uninitialized Resource

<90.0.4430.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • H
CVE-2021-21205

<90.0.4430.72-r0
  • H
CVE-2021-21172

<89.0.4389.72-r0
  • M
CVE-2021-21171

<89.0.4389.72-r0
  • M
Authentication Bypass

<90.0.4430.72-r0
  • M
CVE-2021-21168

<89.0.4389.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • C
Use After Free

<90.0.4430.72-r0
  • M
Origin Validation Error

<90.0.4430.72-r0
  • M
Information Exposure

<90.0.4430.72-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • H
Use After Free

<90.0.4430.72-r0
  • H
Use After Free

<89.0.4389.90-r0
  • H
Out-of-bounds Write

<89.0.4389.90-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • M
CVE-2021-21170

<89.0.4389.72-r0
  • M
Improper Input Validation

<90.0.4430.72-r0
  • L
CVE-2021-21158

<89.0.4389.72-r0
  • M
CVE-2021-21176

<89.0.4389.72-r0
  • H
Use of Uninitialized Resource

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
CVE-2021-21174

<89.0.4389.72-r0
  • M
CVE-2021-21178

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Improper Input Validation

<89.0.4389.72-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • H
Out-of-Bounds

<89.0.4389.72-r0
  • M
Incorrect Authorization

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • M
Origin Validation Error

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
CVE-2021-21181

<89.0.4389.72-r0
  • M
CVE-2021-21185

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.72-r0
  • H
Use After Free

<89.0.4389.114-r0
  • H
Use After Free

<89.0.4389.72-r0
  • M
CVE-2021-21187

<89.0.4389.72-r0
  • M
Incorrect Authorization

<83.0.4103.116-r0
  • H
Use After Free

<89.0.4389.72-r0
  • C
Use After Free

<83.0.4103.116-r0
  • M
CVE-2021-21173

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • M
Improper Authentication

<89.0.4389.72-r0
  • H
Out-of-bounds Write

<89.0.4389.72-r0
  • C
Use After Free

<83.0.4103.116-r0
  • H
Out-of-bounds Write

<89.0.4389.114-r0
  • H
Out-of-bounds Write

<83.0.4103.116-r0
  • M
CVE-2022-2164

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.114-r0
  • M
Race Condition

<103.0.5060.53-r0
  • H
Out-of-Bounds

<89.0.4389.128-r0
  • H
Use After Free

<89.0.4389.128-r0
  • M
CVE-2022-2165

<103.0.5060.53-r0
  • H
Use After Free

<89.0.4389.114-r0
  • H
Out-of-bounds Read

<89.0.4389.114-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.53-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.53-r0
  • M
Improper Input Validation

<103.0.5060.134-r0
  • H
CVE-2022-2162

<103.0.5060.53-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<103.0.5060.114-r0
  • H
Use After Free

<103.0.5060.53-r0
  • M
Use After Free

<72.0.3626.121-r0
  • M
Out-of-bounds Read

<102.0.5005.61-r0
  • H
Out-of-bounds Write

<116.0.5845.187-r0
  • H
Use After Free

<103.0.5060.53-r0
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<102.0.5005.61-r0
  • M
CVE-2022-1868

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<103.0.5060.134-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
CVE-2022-1862

<102.0.5005.61-r0
  • H
Out-of-bounds Write

<103.0.5060.114-r0
  • H
Out-of-bounds Write

<102.0.5005.61-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • C
Use After Free

<102.0.5005.61-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<103.0.5060.114-r0
  • M
CVE-2022-1871

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
CVE-2022-1857

<102.0.5005.61-r0
  • M
CVE-2022-1872

<102.0.5005.61-r0
  • H
CVE-2022-1874

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Exposure of Resource to Wrong Sphere

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
CVE-2022-1867

<102.0.5005.61-r0
  • H
Use After Free

<102.0.5005.61-r0
  • H
Use After Free

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.64-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.64-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • M
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Origin Validation Error

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.64-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Improper Input Validation

<101.0.4951.54-r0
  • M
Cross-site Scripting (XSS)

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Exposure of Resource to Wrong Sphere

<101.0.4951.54-r0
  • M
Authentication Bypass

<101.0.4951.54-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<100.0.4896.127-r0
  • H
Use After Free

<101.0.4951.54-r0
  • M
Incorrect Authorization

<101.0.4951.54-r0
  • H
Out-of-bounds Write

<101.0.4951.54-r0
  • H
Use After Free

<101.0.4951.54-r0