Chromiumembedded develops the Chromium Embedded Framework, a browser-integration library that enables third-party applications to embed Chromium rendering and scripting capabilities, with a limited but structurally important footprint in the landscape. The observed vulnerability signal centers on out-of-bounds read conditions, reflecting the memory-access demands of a browser engine embedded in diverse host applications. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Chromiumembedded over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-21640CRITICAL Chromium Embedded Framework (CEF) is a simple framework for embedding Chromium-based browsers in other applications.`CefVideoConsumerOSR::OnFrameCaptured` does not check `pixel_for | Jan 13, 2024 | 9.6 | 26 | NO | NO |
CVE-2024-21639CRITICAL CEF (Chromium Embedded Framework ) is a simple framework for embedding Chromium-based browsers in other applications. `CefLayeredWindowUpdaterOSR::OnAllocatedSharedMemory` does not | Jan 12, 2024 | 9.6 | 26 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Chromiumembedded.
Media articles that mention a CVE ID that affects a product developed by Chromiumembedded — matched by CVE ID, not by vendor name.