NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23622 | CVE-2015-1261 | android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL"s fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 18503 | CVE-2016-2253 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none. | 1 | 2017-01-19 | 2017-01-02 | View | |||
| 23623 | CVE-2015-1262 | platform/fonts/shaping/HarfBuzzShaper.cpp in Blink, as used in Google Chrome before 43.0.2357.65, does not initialize a certain width field, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted Unicode text. | 2 | 7.5 | High | 2017-01-19 | 2017-01-02 | View | |
| 35143 | CVE-2014-7852 | Cross-site scripting (XSS) vulnerability in JBoss RichFaces, as used in JBoss Portal 6.1.1, allows remote attackers to inject arbitrary web script or HTML via crafted URL, which is not properly handled in a CSS file. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 18504 | CVE-2016-2254 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none. | 1 | 2017-01-19 | 2017-01-02 | View |
Page 2794 of 17672, showing 5 records out of 88360 total, starting on record 13966, ending on 13970