FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-10-10 08:58:57 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
c27c05a7-a0c8-11f0-8471-4ccc6adda413qt6-webengine -- Multiple vulnerabilities

Qt qtwebengine-chromium repo reports:

Backports for 9 security bugs in Chromium:

  • CVE-2025-9866: Determine whether to bypass redirect checks per request
  • CVE-2025-10200: Use after free in Serviceworker
  • CVE-2025-10201: Inappropriate implementation in Mojo
  • CVE-2025-10500: Use after free in Dawn
  • CVE-2025-10501: Use after free in WebRTC
  • CVE-2025-10502: Heap buffer overflow in ANGLE
  • CVE-2025-10890: Side-channel information leakage in V8 (1/2)
  • CVE-2025-10891: Integer overflow in V8
  • CVE-2025-10892: Integer overflow in V8

Discovery 2025-09-25
Entry 2025-10-04
qt6-pdf
qt6-webengine
< 6.9.3

CVE-2025-9866
CVE-2025-10200
CVE-2025-10201
CVE-2025-10500
CVE-2025-10501
CVE-2025-10502
CVE-2025-10890
CVE-2025-10891
CVE-2025-10892
https://code.qt.io/cgit/qt/qtwebengine-chromium.git/log/?h=130-based
edf83c10-83b8-11f0-b6e5-4ccc6adda413qt6-webengine -- Multiple vulnerabilities

Qt qtwebengine-chromium repo reports:

Backports for 25 security bugs in Chromium:

  • CVE-2025-5063: Use after free in Compositing
  • CVE-2025-5064: Inappropriate implementation in Background Fetch
  • CVE-2025-5065: Inappropriate implementation in FileSystemAccess API
  • CVE-2025-5068: Use after free in Blink
  • CVE-2025-5280: Out of bounds write in V8
  • CVE-2025-5281: Inappropriate implementation in BFCache
  • CVE-2025-5283: Use after free in libvpx
  • CVE-2025-5419: Out of bounds read and write in V8
  • CVE-2025-6191: Integer overflow in V8
  • CVE-2025-6192: Use after free in Profiler
  • CVE-2025-6554: Type Confusion in V8
  • CVE-2025-6556: Insufficient policy enforcement in Loader
  • CVE-2025-6557: Insufficient data validation in DevTools
  • CVE-2025-6558: Incorrect validation of untrusted input in ANGLE and GPU
  • CVE-2025-7656: Integer overflow in V8
  • CVE-2025-7657: Use after free in WebRTC
  • CVE-2025-8010: Type Confusion in V8
  • CVE-2025-8576: Use after free in Extensions
  • CVE-2025-8578: Use after free in Cast
  • CVE-2025-8580: Inappropriate implementation in Filesystems
  • CVE-2025-8582: Insufficient validation of untrusted input in DOM
  • CVE-2025-8879: Heap buffer overflow in libaom
  • CVE-2025-8880: Race in V8
  • CVE-2025-8881: Inappropriate implementation in File Picker
  • CVE-2025-8901: Out of bounds write in ANGLE

Discovery 2025-05-27
Entry 2025-08-28
qt6-pdf
qt6-webengine
< 6.9.2

CVE-2025-5063
CVE-2025-5064
CVE-2025-5065
CVE-2025-5068
CVE-2025-5280
CVE-2025-5281
CVE-2025-5283
CVE-2025-5419
CVE-2025-6191
CVE-2025-6192
CVE-2025-6554
CVE-2025-6556
CVE-2025-6557
CVE-2025-6558
CVE-2025-7656
CVE-2025-7657
CVE-2025-8010
CVE-2025-8576
CVE-2025-8578
CVE-2025-8580
CVE-2025-8582
CVE-2025-8879
CVE-2025-8880
CVE-2025-8881
CVE-2025-8901
https://code.qt.io/cgit/qt/qtwebengine-chromium.git/log/?h=130-based