← Back to browse · API

CVE-2021-30633

Severity
CRITICAL
CVSS
9.6
EPSS
0.32657
Risk score
74.83
CISA KEV
Yes
PoC
Yes
Published
2021-11-03
Modified
2021-11-03
First seen
2026-08-07
Aliases
EUVD-2021-17553, GHSA-7PPH-HP2F-GXFG
Products
Google:Chrome unspecified <93.0.4577.82, Google:Chromium Indexed DB API
Sources
euvd EUVD-2021-17553
cisa.gov CVE-2021-30633
packetstorm 24f04eaabf692bb3a228b4ab|CVE-2021-30633

Description

Google Chromium Indexed DB API contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

References