Yandex-n-v
10 CVEs tracked since 2016. Since Oct 2016, none of them reached CISA KEV.
Yandex-n-v CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2016-10 | 5 | 0 |
| 2016-11 | null or fewer | |
| 2016-12 | null or fewer | |
| 2017-01 | null or fewer | |
| 2017-02 | null or fewer | |
| 2017-03 | 2 | 0 |
| 2017-04 | null or fewer | |
| 2017-05 | null or fewer | |
| 2017-06 | null or fewer | |
| 2017-07 | null or fewer | |
| 2017-08 | null or fewer | |
| 2017-09 | null or fewer | |
| 2017-10 | null or fewer | |
| 2017-11 | null or fewer | |
| 2017-12 | null or fewer | |
| 2018-01 | 3 | 0 |
Products
The products that kept showing up in Yandex-n-v's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 10 most recently published vulnerabilities affecting Yandex-n-v.
- CVE-2017-7327Yandex Browser installer for Desktop before 17.4.1 has a DLL Hijacking Vulnerability because an untrusted search path is used for dnsapi.dll, winmm.dll, ntmarta.dll, cryptbase.dll or profapi.dll.7.8
- CVE-2017-7326Race condition issue in Yandex Browser for Android before 17.4.0.16 allowed a remote attacker to potentially exploit memory corruption via a crafted HTML page7.5
- CVE-2017-7325Yandex Browser before 16.9.0 allows remote attackers to spoof the address bar via window.open.7.5
- CVE-2016-8507Yandex Browser for iOS before 16.10.0.2357 does not properly restrict processing of facetime:// URLs, which allows remote attackers to initiate facetime-call without user's approval and obtain vide...6.5
- CVE-2016-8508Yandex Browser for desktop before 17.1.1.227 does not show Protect (similar to Safebrowsing in Chromium) warnings in web-sites with special content-type, which could be used by remote attacker for ...6.5
- CVE-2016-8505XSS in Yandex Browser BookReader in Yandex browser for desktop for versions before 16.6. could be used by remote attacker for evaluation arbitrary javascript code.6.1
- CVE-2016-8504CSRF of synchronization form in Yandex Browser for desktop before version 16.6 could be used by remote attacker to steal saved data in browser profile.4.3
- CVE-2016-8506XSS in Yandex Browser Translator in Yandex browser for desktop for versions from 15.12 to 16.2 could be used by remote attacker for evaluation arbitrary javascript code.6.1
- CVE-2016-8503Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 16.7 to 16.9 could be used by remote attacker for brute-forcing passwords from important web-resource with special Ja...7.3
- CVE-2016-8502Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 15.12.0 to 16.2 could be used by remote attacker for brute-forcing passwords from important web-resource with special...7.3
The record
- Peak rank
- #28 in Oct 2016
- Busiest month shown
- Oct 2016, 5 CVEs
- Months with a KEV entry
- 0 since Oct 2016
- Monthly snapshots
- 3 since 2016