WebKit
Webkit · 5 CVEs
Webkitgtk: validate the full featurelist array once in opentypeverticaldata findfeature
Aug 31, 2026
Webkitgtk: use-after-free of jscvalue function parameters
Aug 24, 2026
webkitgtk: use-after-free in the MediaRecorder API of the WebKit GStreamer-based ports
Oct 6, 2023
The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrat…
Mar 7, 2017
JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascri…
Feb 3, 2017
WebKit: off-by-one memory corruption flaw WebSocketHandshake::readServerHandshake()
Jul 22, 2010
WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service…
Nov 12, 2009
WebKit: Sensitive information disclosure from cookies via XMLHttpRequest calls
Feb 5, 2009
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-83596 | Webkitgtk: validate the full featurelist array once in opentypeverticaldata findfeature | HIGH | 0.29% | Aug 31, 2026 |
| CVE-2026-78376 | Webkitgtk: use-after-free of jscvalue function parameters | HIGH | 0.29% | Aug 24, 2026 |
| CVE-2023-39928 | webkitgtk: use-after-free in the MediaRecorder API of the WebKit GStreamer-based ports | HIGH | 1.45% | Oct 6, 2023 |
| CVE-2016-9643 | The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrated in a large number of ($ (open parenth… | HIGH | 3.07% | Mar 7, 2017 |
| CVE-2016-9642 | JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascript file. | MEDIUM | 1.27% | Feb 3, 2017 |
| CVE-2010-1766 | WebKit: off-by-one memory corruption flaw WebSocketHandshake::readServerHandshake() | HIGH | 2.25% | Jul 22, 2010 |
| CVE-2009-3933 | WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that ca… | MEDIUM | 3.10% | Nov 12, 2009 |
| CVE-2008-6059 | WebKit: Sensitive information disclosure from cookies via XMLHttpRequest calls | MEDIUM | 1.95% | Feb 5, 2009 |
Showing 1 to 5 of 5 CVEs