Showing 2 vulnerabilities on this page for Chromium Mojo

Signals CISA KEV Ransomware Nuclei
Google vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Google Chromium Mojo Sandbox Escape Vulnerability

Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remote attacker to perform a sandbox escape via a malicious file. (Chromium security severity: High)

Mar 26, 2025
CVSS8.3v3.1EPSS8.4%PoCs5SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Google Chromium Mojo Insufficient Data Validation Vulnerability

Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

CWE-20Sep 26, 2022
CVSS9.6v3.1EPSS5.68%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX