Known vulnerabilities in WebKitGTK+ - page 15

Vendor: WebKitGTK
Software: WebKitGTK+
Software CPE: cpe:2.3:a:webkitgtk:webkitgtk_plus:*:*:*:*:*:*:*:*
Total vulnerabilities: 430
Public exploits: 27
Known exploited (KEV): 36
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WebKitGTK+ WebKitGTK+ is affected by 430 known vulnerabilities: 26 critical, 197 high, 100 medium, 107 low Critical High Medium Low

Vulnerabilities (430)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU58701 - Use After Free
CVE-2021-30809
CWE-416 High
No
No
2.32.4 08.12.2021 SB2021092021
SB2021102713
SB2021122007
and 8 more
#VU58699 - Out-of-bounds read
CVE-2021-30836
CWE-125 Medium
No
No
2.32.4 08.12.2021 SB2021092021
SB2021102713
SB2021122007
and 8 more
#VU58697 - Type confusion
CVE-2021-30818
CWE-843 High
No
No
2.34.0 08.12.2021 SB2021092021
SB2021102713
SB2021122008
and 8 more
#VU58696 - Exposure of sensitive information to an unauthorized actor
CVE-2021-30884
CWE-200 Low
No
No
2.34.0 08.12.2021 SB2021092021
SB2021102713
SB2021122008
and 8 more
#VU58677 - Exposure of sensitive information to an unauthorized actor
CVE-2021-30897
CWE-200 Medium
No
No
2.34.0 08.12.2021 SB2021102713
SB2021122008
SB2022020101
and 7 more
#VU57811 - Permissions, Privileges, and Access Controls
CVE-2021-42762
CWE-264 Low
No
No
2.34.1 01.11.2021 SB2021110102
SB2021110112
SB2021110113
and 12 more
#VU57744 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-30890
CWE-79 Medium
No
No
2.34.3 27.10.2021 SB2021102713
SB2021102715
SB2021102717
and 16 more
#VU57742 - Memory corruption
CVE-2021-30889
CWE-119 High
No
No
2.34.0 27.10.2021 SB2021102713
SB2021102715
SB2021102717
and 11 more
#VU57741 - Exposure of sensitive information to an unauthorized actor
CVE-2021-30888
CWE-200 Low
No
No
2.34.0 27.10.2021 SB2021102713
SB2021102715
SB2021102716
and 12 more
#VU57740 - Permissions, Privileges, and Access Controls
CVE-2021-30887
CWE-264 Low
No
No
2.34.3 27.10.2021 SB2021102713
SB2021102715
SB2021102717
and 16 more
#VU57739 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-30823
CWE-300 Medium
No
No
2.34.0 27.10.2021 SB2021102713
SB2021122008
SB2022020101
and 7 more
#VU56730 - Memory corruption
CVE-2021-30846
CWE-119 High
No
No
2.34.0 20.09.2021 SB2021092021
SB2021092022
SB2021092024
and 21 more
#VU56731 - Memory corruption
CVE-2021-30848
CWE-119 High
No
No
2.32.4 20.09.2021 SB2021092021
SB2021092022
SB2021110102
and 9 more
#VU56732 - Memory corruption
CVE-2021-30849
CWE-119 High
No
No
2.32.4 20.09.2021 SB2021092021
SB2021092022
SB2021092023
and 12 more
#VU56733 - Memory corruption
CVE-2021-30851
CWE-119 High
No
No
2.34.0 20.09.2021 SB2021092021
SB2021092022
SB2021092024
and 21 more
#VU56475 - Use After Free
CVE-2021-30858
CWE-416 Critical
Available
Exploited
2.32.4, 2.33.91 13.09.2021 SB2021091318
SB2021091319
SB2021091322
and 21 more
#VU53782 - Use After Free
CVE-2021-21775
CWE-416 High
No
No
2.30.5, 2.31.1 03.06.2021 SB2021060322
SB2021072710
SB2021072711
and 9 more
#VU53781 - Use After Free
CVE-2021-21806
CWE-416 High
No
No
2.32.0 03.06.2021 SB2021060322
SB2021100415
SB2022020101
and 3 more
#VU53497 - Use After Free
CVE-2021-21779
CWE-416 High
No
No
2.33.1 24.05.2021 SB2021052415
SB2021052503
SB2021052504
and 14 more
#VU53496 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-30744
CWE-79 Medium
No
No
2.33.1 24.05.2021 SB2021052415
SB2021052503
SB2021052504
and 14 more


Showing elements 281 - 300 out of 430