Record summary

CVE-2020-16013 has a selected CVSS score of 8.8 (high). CISA lists CVE-2020-16013 in KEV.

Description

Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Description source: CVE List

Exploitation context

Known exploitation

CISA KEV
Listed · Nov 3, 2021 · CISA
VulnCheck KEV
Listed · Nov 9, 2020 · VulnCheck
Reported exploitation
Observed · VulnCheck

CISA SSVC decision

ExploitationActive
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 3, 2025 · Source: CVE List

Affected products and versions

6
ProductSourceVersion rangeStatus
CVE ListBefore 86.0.4240.198affected
CISAVersion data not supplied
GitHub AdvisoryBefore 86.0.241 · Fixed in 86.0.241affected
GitHub AdvisoryBefore 86.0.241 · Fixed in 86.0.241affected
GitHub AdvisoryBefore 86.0.241 · Fixed in 86.0.241affected
GitHub AdvisoryBefore 86.0.241 · Fixed in 86.0.241affected

References

5