NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38789 | CVE-2013-2876 | browser/extensions/api/tabs/tabs_api.cc in Google Chrome before 28.0.1500.71 does not properly enforce restrictions on the capture of screenshots by extensions, which allows remote attackers to obtain sensitive information about the content of a previous page via vectors involving an interstitial page. | 2 | 5 | Medium | 2017-01-18 | 2016-10-18 | View | |
18044 | CVE-2016-1694 | browser/browsing_data/browsing_data_remover.cc in Google Chrome before 51.0.2704.63 deletes HPKP pins during cache clearing, which makes it easier for remote attackers to spoof web sites via a valid certificate from an arbitrary recognized Certification Authority. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-28 | View | |
18272 | CVE-2016-1958 | browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
53000 | CVE-2007-0780 | browser.js in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 uses the requesting URI to identify child windows, which allows remote attackers to conduct cross-site scripting (XSS) attacks by opening a blocked popup originating from a javascript: URI in combination with multiple frames having the same data: URI. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
77384 | CVE-2000-1152 | Browser IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that contains a long URL. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 16087 of 17672, showing 5 records out of 88360 total, starting on record 80431, ending on 80435