CVE-2017-7089 | UXSS via parent-tab:// | 10? | Sep 20, 2017 |
CVE-2017-7037 | UXSS via JSObject::putInlineSlow and JSValue::putToPrimitive | 10? | Mar 10 2017 |
0-1197 | WebKit: UXSS via CachedFrameBase::restore | 10? | Mar 17 2017 |
CVE-2017-2528 | UXSS: CachedFrame doesn't detach openers | 10? | Mar 10 2017 |
0-1163 | UXSS via Document::prepareForDestruction and CachedFrame | 10? | Mar 3 2017 |
CVE-2017-2510 | UXSS: enqueuePageshowEvent and enqueuePopstateEvent don't enqueue, but dispatch | 10? | Feb 27 2017 |
CVE-2017-2508 | UXSS via ContainerNode::parserInsertBefore | 10? | Feb 24 2017 |
0-1134 | UXSS via ContainerNode::parserRemoveChild (2) | 10? | Feb 17 2017 |
0-1132 | UXSS: the patch of #1110 made another bug | 10 | Feb 16 2017 |
CVE-2017-2504 | UXSS via Editor::Command::execute | 10.0.3 | Feb 16 2017 |
CVE-2017-2493 | UXSS through HTMLObjectElement::updateWidget | 10.0.3 | Feb 9 2017 |
CVE-2017-2480 | UXSS via a synchronous page load | 10.0.3 | Feb 9 2017 |
CVE-2017-2479 | UXSS via a focus event and a link element | 10.0.3 | Feb 9 2017 |
CVE-2017-2475 | UXSS via ContainerNode::parserRemoveChild | 10.0.3 | Feb 2 2017 |
CVE-2017-2468 | Use-After-Free via Document::adoptNode | 10.0.3 | Jan 23 2017 |
0-1094 | UXSS via operationSpreadGeneric | 10.0.2 | Jan 20 2017 |
0-1084 | UXSS via PrototypeMap::createEmptyStructure | 10.0.2 | Jan 17 2017 |
CVE-2017-2445 | UXSS via disconnectSubframes | 10.0.2 | Jan 9 2017 |
CVE-2017-2442 | UXSS with JSCallbackData | 10.0.2 | Jan 3 2017 |
CVE-2017-2367 | UXSS by accessing a named property from an unloaded window | 10.0.2 | Dec 23 2016 |
CVE-2017-2365 | UXSS via Frame::setDocument | 10.0.2 | Dec 20 2016 |
CVE-2017-2364 | UXSS via Frame::setDocument (1). | 10.0.2 | Dec 20 2016 |
CVE-2017-2363 | UXSS via FrameLoader::clear | 10.0.2 | Dec 19 2016 |