Known vulnerabilities in WPE WebKit - page 16

Vendor: WebKitGTK
Software: WPE WebKit
Software CPE: cpe:2.3:a:webkitgtk:wpe_webkit:*:*:*:*:*:*:*:*
Total vulnerabilities: 394
Public exploits: 16
Known exploited (KEV): 33
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WPE WebKit WPE WebKit is affected by 394 known vulnerabilities: 23 critical, 178 high, 89 medium, 104 low Critical High Medium Low

Vulnerabilities (394)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU51747 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-1879
CWE-79 High
Available
Exploited
- 26.03.2021 SB2021032630
SB2021032631
SB2021032632
and 1 more
#VU51626 - Use After Free
CVE-2020-9947
CWE-416 High
No
No
2.30.0 22.03.2021 SB2021032301
SB2021050106
SB2021061723
and 5 more
#VU51625 - Incomplete cleanup
CVE-2020-29623
CWE-459 Low
No
No
2.30.6 22.03.2021 SB2021032301
SB2021032613
SB2021032614
and 15 more
#VU50235 - Exposure of sensitive information to an unauthorized actor
CVE-2021-1799
CWE-200 Medium
No
No
2.30.6 02.02.2021 SB2021020201
SB2021020209
SB2021032301
and 13 more
#VU50234 - Type confusion
CVE-2021-1789
CWE-843 High
No
Exploited
2.30.6 02.02.2021 SB2021020201
SB2021020209
SB2021032301
and 13 more
#VU50233 - Permissions, Privileges, and Access Controls
CVE-2021-1801
CWE-264 Medium
No
No
2.30.6 02.02.2021 SB2021020201
SB2021032301
SB2021032613
and 12 more
#VU50232 - Permissions, Privileges, and Access Controls
CVE-2021-1765
CWE-264 Medium
No
No
2.30.6 02.02.2021 SB2021020201
SB2021032301
SB2021032613
and 15 more
#VU50044 - Business Logic Errors (3.0)
CVE-2021-1871
CWE-840 Critical
No
Exploited
2.32.0 27.01.2021 SB2021012702
SB2021020201
SB2021033006
and 13 more
#VU50043 - Business Logic Errors (3.0)
CVE-2021-1870
CWE-840 Critical
No
Exploited
2.30.6 27.01.2021 SB2021012702
SB2021020201
SB2021032301
and 12 more
#VU48726 - Use After Free
CVE-2020-13558
CWE-416 High
No
No
2.30.5 01.12.2020 SB2020120106
SB2021021816
SB2021050106
and 5 more
#VU48720 - Use After Free
CVE-2020-13543
CWE-416 High
No
No
2.30.3 01.12.2020 SB2020112408
SB2020122344
SB2021040169
and 7 more
#VU48617 - Use After Free
CVE-2020-13584
CWE-416 High
No
No
2.30.3 24.11.2020 SB2020112408
SB2020112602
SB2020112618
and 11 more
#VU48190 - Use After Free
CVE-2020-27918
CWE-416 High
No
No
2.30.6 06.11.2020 SB2020110610
SB2020110611
SB2020110612
and 17 more
#VU46804 - Out-of-bounds write
CVE-2020-9983
CWE-787 High
No
No
2.30.3 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 13 more
#VU46803 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-9952
CWE-79 Medium
No
No
2.28.3 18.09.2020 SB2020091802
SB2020092329
SB2020112408
and 9 more
#VU46802 - Use After Free
CVE-2020-9951
CWE-416 High
No
No
2.30.3 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU46801 - Type confusion
CVE-2020-9948
CWE-843 High
No
No
2.30.3 18.09.2020 SB2020091802
SB2020112408
SB2020112602
and 14 more
#VU32967 - Out-of-bounds read
CVE-2020-9894
CWE-125 Medium
No
No
2.28.4 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32966 - Use After Free
CVE-2020-9893
CWE-416 High
No
No
2.28.4 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more
#VU32965 - Command injection
CVE-2020-9862
CWE-77 Medium
No
No
2.28.4 02.08.2020 SB2020080202
SB2020080203
SB2020082501
and 11 more


Showing elements 301 - 320 out of 394