CVE-2021-38003CISA KEVEPSS p98.3%

CVE-2021-38003Google Chromium V8 Memory Corruption Vulnerability

Google / Chromium V8

Description

Google Chromium V8 Engine has a bug in JSON.stringify, where the internal TheHole value can leak to script code, causing memory corruption. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Scoring

EPSS36.24% probability of exploitation · percentile 98.3% · 2026-06-20T12:03:10Z

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryGoogle Chromium V8 Memory Corruption Vulnerabilitykev-cve-2021-380030%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Google Chromium V8 Out-of-Bounds Write Vulnerability
CVE
Google Chromium V8 Incorrect Implementation Vulnerabililty
CVE
Google Chromium V8 Heap Buffer Overflow Vulnerability
CVE
Google Chromium V8 Out-of-Bounds Memory Write Vulnerability
CVE
Google Chromium V8 Improper Input Validation Vulnerability
CVE
Google Chromium V8 Type Confusion Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.