Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Heap-based buffer overflow in KnoxVault trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to execute arbitrary code.
CVSS Score
7.1
EPSS Score
0.001
Published
2026-09-09
Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows local privileged attackers to launch arbitrary activity.
CVSS Score
4.6
EPSS Score
0.001
Published
2026-09-09
Out-of-bounds write in Keymaster trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to write out-of-bounds memory.
CVSS Score
8.4
EPSS Score
0.001
Published
2026-09-09
Out-of-bounds write in libmdnie.so prior to SMR Sep-2026 Release 1 allows local attackers to execute arbitrary code with system server privilege.
CVSS Score
8.6
EPSS Score
0.001
Published
2026-09-09
Improper input validation in loading a subtitle frame in libsubextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.
CVSS Score
6.9
EPSS Score
0.001
Published
2026-09-09
Improper input validation in removing style tag in libsubextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.
CVSS Score
6.9
EPSS Score
0.001
Published
2026-09-09
Clickjacking in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)
CVSS Score
5.4
EPSS Score
0.002
Published
2026-09-09
Use after free in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVSS Score
3.1
EPSS Score
0.002
Published
2026-09-09
Information leak in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Medium)
CVSS Score
4.3
EPSS Score
0.002
Published
2026-09-09
Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)
CVSS Score
5.4
EPSS Score
0.003
Published
2026-09-09


Contact Us

Shodan ® - All rights reserved