Роса Хром
804 CVEs tracked. 8 of them are in CISA KEV.
This hub aggregates every CVE we track for ��оса хром, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Роса Хром CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 10 |
| 2024-11 | 8 |
| 2024-12 | 3 |
| 2025-01 | 7 |
| 2025-02 | 17 |
| 2025-03 | 15 |
| 2025-04 | 8 |
| 2025-05 | 6 |
| 2025-06 | 12 |
| 2025-07 | 9 |
| 2025-08 | 2 |
| 2025-09 | 4 |
| 2025-10 | 7 |
| 2025-11 | 19 |
| 2025-12 | 8 |
| 2026-01 | 17 |
| 2026-02 | 2 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 804 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical68
- High366
- Medium336
- Low34
Latest CVEs
The 15 most recently published vulnerabilities affecting Роса Хром.
- CVE-2025-10256Ffmpeg: null pointer dereference in firequalizer filter (libavfilter/af_firequalizer.c)5.3
- CVE-2026-21722Public Dashboards time range restriction on annotations can be bypassed5.3
- CVE-2026-22262Suricata datasets: stack overflow when saving a set5.9
- CVE-2026-22261Suricata eve/alert: http1 xff handling can lead to denial of service3.7
- CVE-2026-22260Suricata http1: infinite recursion in decompression7.5
- CVE-2026-22259Suricata dnp3: unbounded transaction growth7.5
- CVE-2026-22258Suricata DCERPC: unbounded fragment buffering leads to memory exhaustion7.5
- CVE-2026-22796ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function5.3
- CVE-2026-22795Missing ASN1_TYPE validation in PKCS#12 parsing5.5
- CVE-2025-69420Missing ASN1_TYPE validation in TS_RESP_verify_response() function7.5
- CVE-2025-69419Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion7.4
- CVE-2025-69418Unauthenticated/unencrypted trailing bytes with low-level OCB function calls4.0
- CVE-2025-68160Heap out-of-bounds write in BIO_f_linebuffer on short writes4.7
- CVE-2025-68670xrdp improperly checks bounds of domain string length, which leads to Stack-based Buffer Overflow9.1
- CVE-2026-0915getnetbyaddr and getnetbyaddr_r leak stack contents to DNS resovler7.5
Product grouping is registry-driven, with AI assist and human review. How it works