CVE-2023-6345CISA KEVEPSS p97.0%

CVE-2023-6345Google Skia Integer Overflow Vulnerability

Google / Chromium Skia

Description

Google Chromium Skia contains an integer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a malicious file. This vulnerability affects Google Chrome and ChromeOS, Android, Flutter, and possibly other products.

Scoring

EPSS19.63% probability of exploitation · percentile 97.0% · 2026-06-19T12:03:05Z

CISA KEV entry

Added to KEV: 2023-11-30

(incoming)1

TypeTargetConfidenceTier
KEVEntryGoogle Skia Integer Overflow Vulnerabilitykev-cve-2023-63450%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Google Chrome Skia Integer Overflow Vulnerability
CVE
CVE-2025-0436
CVE
Google Skia Out-of-Bounds Write Vulnerability
CVE
CVE-2026-7353
CVE
CVE-2026-3538
CVE
CVE-2026-10009
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.