← Back to browse · API

CVE-2021-21220

Severity
HIGH
CVSS
8.8
EPSS
0.69291
Risk score
84.45
CISA KEV
Yes
PoC
No
Published
2021-11-03
Modified
2021-11-03
First seen
2026-08-07
Aliases
EUVD-2021-8611, GHSA-5CW9-VVR5-JCWF
Products
Google:Chrome unspecified <89.0.4389.128, Google:Chromium V8
Sources
euvd EUVD-2021-8611
cisa.gov CVE-2021-21220

Description

Google Chromium V8 Engine contains an improper input validation vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

References