{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-21T06:43:32.107","vulnerabilities":[{"cve":{"id":"CVE-2014-1716","sourceIdentifier":"chrome-cve-admin@google.com","published":"2014-04-09T10:56:51.303","lastModified":"2026-06-17T00:05:25.767","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-site scripting (XSS) vulnerability in the Runtime_SetPrototype function in runtime.cc in Google V8, as used in Google Chrome before 34.0.1847.116, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka \"Universal XSS (UXSS).\""},{"lang":"es","value":"Vulnerabilidad de XSS en la función Runtime_SetPrototype en runtime.cc en Google V8, utilizado en Google Chrome anterior a 34.0.1847.116, permite a atacantes remotos inyectar script Web o HTML arbitrarios a través de vectores no especificados, también conocido como \"Universal XSS (UXSS).\""}],"affected":[{"source":"chrome-cve-admin@google.com","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-94"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*","versionEndIncluding":"34.0.1847.115","matchCriteriaId":"C03625A8-ABF8-45FC-B2E6-27A476BE2E92"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*","matchCriteriaId":"16F59A04-14CF-49E2-9973-645477EA09DA"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*","matchCriteriaId":"C11E6FB0-C8C0-4527-9AA0-CB9B316F8F43"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*","matchCriteriaId":"DFBF430B-0832-44B0-AA0E-BA9E467F7668"},{"vulnerable":true,"criteria":"cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*","matchCriteriaId":"A10BC294-9196-425F-9FB0-B1625465B47F"}]}]}],"references":[{"url":"http://googlechromereleases.blogspot.com/2014/04/stable-channel-update.html","source":"chrome-cve-admin@google.com"},{"url":"http://lists.opensuse.org/opensuse-updates/2014-05/msg00012.html","source":"chrome-cve-admin@google.com"},{"url":"http://security.gentoo.org/glsa/glsa-201408-16.xml","source":"chrome-cve-admin@google.com"},{"url":"http://www.debian.org/security/2014/dsa-2905","source":"chrome-cve-admin@google.com"},{"url":"https://code.google.com/p/chromium/issues/detail?id=354123","source":"chrome-cve-admin@google.com"},{"url":"https://code.google.com/p/v8/source/detail?r=20138","source":"chrome-cve-admin@google.com"},{"url":"http://googlechromereleases.blogspot.com/2014/04/stable-channel-update.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-updates/2014-05/msg00012.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://security.gentoo.org/glsa/glsa-201408-16.xml","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2014/dsa-2905","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://code.google.com/p/chromium/issues/detail?id=354123","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://code.google.com/p/v8/source/detail?r=20138","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}