CVE Database and Vulnerability Search
Search CVE and GHSA vulnerability records by identifier, title, vendor, product, package, or CWE. Filter by severity, CISA KEV, ransomware association, linked artifacts, and Nuclei templates; sort by publication date, CVSS, or EPSS.
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-2856MEDIUM | Google Chromium Intents Insufficient Input Validation VulnerabilityInsufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily browse to a malicious website via a crafted HTML page. CWE-20Sep 26, 2022 | CVSS6.5v3.1 | EPSS4.53% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-38000MEDIUM | Google Chromium Intents Improper Input Validation VulnerabilityInsufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page. | CVSS6.1v3.1 | EPSS4.65% | PoCs0 | SignalsListed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |