Wpe Webkit
Wpewebkit · 24 CVEs
webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
Sep 15, 2025
webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash
Sep 15, 2025
webkitgtk: Processing maliciously crafted web content may lead to memory corruption
Jul 29, 2025
angle: insufficient input validation can cause undefined behavior
Jul 15, 2025
webkit: pointer authentication bypass
May 13, 2024
webkit: processing malicious web content prevents Content Security Policy from being enforced
Mar 8, 2024
webkit: maliciously crafted webpage may be able to fingerprint the user
Mar 8, 2024
webkit: malicious website may exfiltrate audio data cross-origin
Mar 8, 2024
webkit: processing maliciously crafted web content prevents Content Security Policy from being enforced
Mar 8, 2024
webkit: visiting a malicious website may lead to address bar spoofing
Feb 21, 2024
webkitgtk: arbitrary javascript code execution
Sep 6, 2023
webkitgtk: content security policy blacklist failure
Sep 6, 2023
webkitgtk: use after free vulnerability
Aug 14, 2023
webkitgtk: Multiple memory corruption issues leading to arbitrary code execution
Mar 6, 2023
webkitgtk: processing maliciously crafted web content may lead to arbitrary code execution
Aug 24, 2022
Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploi…
Jul 28, 2022
webkitgtk: limited sandbox escape via VFS syscalls
Oct 20, 2021
webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution
Aug 24, 2021
webkitgtk: Improper access management to CLONE_NEWUSER and the TIOCSTI ioctl
Jul 14, 2020
webkitgtk: use-after-free via crafted web content
Apr 17, 2020
webkitgtk: Use-after-free issue in accessibility/AXObjectCache.cpp
Mar 2, 2020
webkitgtk: HTTP proxy setting deanonymization information disclosure
Apr 10, 2019
webkitgtk: processing maliciously crafted web content lead to URI spoofing
Jan 14, 2019
The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebK…
Jun 19, 2018
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-43343 | webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash | CRITICAL | 0.78% | Sep 15, 2025 |
| CVE-2025-43342 | webkitgtk: Processing maliciously crafted web content may lead to an unexpected process crash | CRITICAL | 0.75% | Sep 15, 2025 |
| CVE-2025-31277 KEV | webkitgtk: Processing maliciously crafted web content may lead to memory corruption | HIGH | 1.60% | Jul 29, 2025 |
| CVE-2025-6558 KEV | angle: insufficient input validation can cause undefined behavior | HIGH | 9.46% | Jul 15, 2025 |
| CVE-2024-27834 | webkit: pointer authentication bypass | HIGH | 0.60% | May 13, 2024 |
| CVE-2024-23263 | webkit: processing malicious web content prevents Content Security Policy from being enforced | HIGH | 1.50% | Mar 8, 2024 |
| CVE-2024-23280 | webkit: maliciously crafted webpage may be able to fingerprint the user | HIGH | 1.28% | Mar 8, 2024 |
| CVE-2024-23254 | webkit: malicious website may exfiltrate audio data cross-origin | MEDIUM | 1.25% | Mar 8, 2024 |
| CVE-2024-23284 | webkit: processing maliciously crafted web content prevents Content Security Policy from being enforced | MEDIUM | 1.47% | Mar 8, 2024 |
| CVE-2023-42843 | webkit: visiting a malicious website may lead to address bar spoofing | HIGH | 0.85% | Feb 21, 2024 |
| CVE-2023-40397 | webkitgtk: arbitrary javascript code execution | CRITICAL | 1.67% | Sep 6, 2023 |
| CVE-2023-32370 | webkitgtk: content security policy blacklist failure | MEDIUM | 0.79% | Sep 6, 2023 |
| CVE-2023-28198 | webkitgtk: use after free vulnerability | HIGH | 0.93% | Aug 14, 2023 |
| CVE-2019-8720 KEV | webkitgtk: Multiple memory corruption issues leading to arbitrary code execution | HIGH | 1.56% | Mar 6, 2023 |
| CVE-2022-32893 KEV | webkitgtk: processing maliciously crafted web content may lead to arbitrary code execution | HIGH | 9.93% | Aug 24, 2022 |
| CVE-2022-2294 KEV | Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… | HIGH | 70.46% | Jul 28, 2022 |
| CVE-2021-42762 | webkitgtk: limited sandbox escape via VFS syscalls | MEDIUM | 0.54% | Oct 20, 2021 |
| CVE-2021-30952 KEV | webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution | HIGH | 6.96% | Aug 24, 2021 |
| CVE-2020-13753 | webkitgtk: Improper access management to CLONE_NEWUSER and the TIOCSTI ioctl | CRITICAL | 3.27% | Jul 14, 2020 |
| CVE-2020-11793 | webkitgtk: use-after-free via crafted web content | HIGH | 2.94% | Apr 17, 2020 |
| CVE-2020-10018 | webkitgtk: Use-after-free issue in accessibility/AXObjectCache.cpp | CRITICAL | 4.99% | Mar 2, 2020 |
| CVE-2019-11070 | webkitgtk: HTTP proxy setting deanonymization information disclosure | MEDIUM | 3.29% | Apr 10, 2019 |
| CVE-2019-6251 | webkitgtk: processing maliciously crafted web content lead to URI spoofing | HIGH | 4.26% | Jan 14, 2019 |
| CVE-2018-12293 | The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to versi… | HIGH | 10.39% | Jun 19, 2018 |
Showing 1 to 24 of 24 CVEs