Known vulnerabilities in WebKitGTK+ - page 11

Vendor: WebKitGTK
Software: WebKitGTK+
Software CPE: cpe:2.3:a:webkitgtk:webkitgtk_plus:*:*:*:*:*:*:*:*
Total vulnerabilities: 459
Public exploits: 28
Known exploited (KEV): 36
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WebKitGTK+ WebKitGTK+ is affected by 459 known vulnerabilities: 26 critical, 198 high, 109 medium, 126 low Critical High Medium Low

Vulnerabilities (459)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU83606 - Memory corruption
CVE-2023-42917
CWE-119 Critical
No
Exploited
2.42.3 01.12.2023 SB2023120101
SB2023120102
SB2023120103
and 28 more
#VU83605 - Out-of-bounds read
CVE-2023-42916
CWE-125 Critical
No
Exploited
2.42.3 01.12.2023 SB2023120101
SB2023120102
SB2023120103
and 16 more
#VU82750 - Untrusted Search Path
CVE-2023-32430
CWE-426 Low
No
No
- 06.11.2023 SB2023110630
SB2023052339
#VU82732 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-32919
CWE-451 Medium
No
No
2.38.4 06.11.2023 SB2023110621
SB2022121387
SB2023112485
and 6 more
#VU82725 - Exposure of sensitive information to an unauthorized actor
CVE-2022-32933
CWE-200 Medium
No
No
2.38.0 06.11.2023 SB2023110606
SB2022072101
SB2023112485
and 5 more
#VU82414 - Exposure of sensitive information to an unauthorized actor
CVE-2023-32359
CWE-200 Low
No
No
2.42.0 25.10.2023 SB2023102571
SB2023102572
SB2023112485
and 15 more
#VU82397 - Memory corruption
CVE-2023-41983
CWE-119 Medium
No
No
2.42.2 25.10.2023 SB2023102566
SB2023102572
SB2023102573
and 19 more
#VU82396 - Improper input validation
CVE-2023-42852
CWE-20 High
No
No
2.42.2 25.10.2023 SB2023102566
SB2023102572
SB2023102573
and 27 more
#VU82395 - Use After Free
CVE-2023-41976
CWE-416 High
No
No
- 25.10.2023 SB2023102565
SB2023102566
SB2023102572
and 4 more
#VU82394 - Memory corruption
CVE-2023-40447
CWE-119 High
No
No
- 25.10.2023 SB2023102565
SB2023102566
SB2023102572
and 4 more
#VU81456 - Use After Free
CVE-2023-39928
CWE-416 High
No
No
2.42.0 04.10.2023 SB2023100439
SB2023101025
SB2023101301
and 16 more
#VU81192 - Use After Free
CVE-2023-39434
CWE-416 High
No
No
2.40.5 26.09.2023 SB2023092655
SB2023092664
SB2023092707
and 12 more
#VU81180 - Memory corruption
CVE-2023-35074
CWE-119 High
No
No
2.40.0 26.09.2023 SB2023092655
SB2023092656
SB2023092664
and 10 more
#VU81179 - Memory corruption
CVE-2023-41074
CWE-119 High
No
No
2.42.0 26.09.2023 SB2023092655
SB2023092656
SB2023092664
and 17 more
#VU81178 - Security Features
CVE-2023-40451
CWE-254 High
No
No
2.40.5 26.09.2023 SB2023092655
SB2023092656
SB2023102639
and 13 more
#VU81042 - Memory corruption
CVE-2023-41993
CWE-119 Critical
Available
Exploited
2.42.1 21.09.2023 SB2023092140
SB2023092141
SB2023092142
and 24 more
#VU80630 - Security Features
CVE-2023-32370
CWE-254 Medium
No
No
2.40.1 11.09.2023 SB2023091164
SB2023032802
SB2023092520
and 9 more
#VU80603 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-40397
CWE-94 High
No
No
2.40.5 11.09.2023 SB2023091135
SB2023072444
SB2023092520
and 15 more
#VU78994 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-46725
CWE-451 Medium
No
No
2.38.4 07.08.2023 SB2023080720
SB2023032762
SB2022121387
and 7 more
#VU78988 - Use After Free
CVE-2023-28198
CWE-416 High
No
No
2.40.1 07.08.2023 SB2023032802
SB2023032762
SB2023091164
and 11 more


Showing elements 201 - 220 out of 459