[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2016-1636":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":18,"aliases":19,"duplicate_of":9,"upstream":20,"downstream":21,"duplicates":36,"related":37,"reserved_at":9,"published_at":41,"modified_at":42,"state":43,"summary":44,"references_raw":53,"kevs":112,"epss":113,"epss_history":116,"metrics":368,"affected":377},"CVE-2016-1636","The PendingScript::notifyFinished function in WebKit/Source/core/dom/PendingScript.cpp in Google Chrome before 49.0.2623.75 relies on memory-cache information about integrity-check occurrences instead of integrity-check successes, which allows remote attackers to bypass the Subresource Integrity (aka SRI) protection mechanism by triggering two loads of the same resource.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":9,"likelihood_of_exploit":9,"capec":17},"CWE-264","Permissions, Privileges, and Access Controls","Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.","category","Obsolete",[],[],[],[],[22,24,26,28,30,32,34],{"_key":23},"RHSA-2016:0359",{"_key":25},"OPENSUSE-SU-2024:10171-1",{"_key":27},"OPENSUSE-SU-2024:12948-1",{"_key":29},"DSA-3507-1",{"_key":31},"MGASA-2016-0127",{"_key":33},"UBUNTU-CVE-2016-1636",{"_key":35},"USN-2920-1",[],[38,39,40],{"_key":25},{"_key":27},{"_key":31},"2016-03-06T02:00:00.000Z","2024-08-05T23:02:12.425Z","Modified",{"cisa_kev":45,"cisa_ransomware":45,"cisa_vendor":9,"epss_severity":46,"epss_score":47,"severity":48,"severity_score":49,"severity_version":50,"severity_source":51,"severity_vector":52,"severity_status":43},false,"low",0.01448,"critical",9.8,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[54,61,65,71,76,81,86,90,94,99,103,108],{"url":55,"sources":56,"tags":58},"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00014.html",[57,51],"cve.org",[59,60],"Vendor Advisory","X Refsource SUSE",{"url":62,"sources":63,"tags":64},"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00018.html",[57,51],[59,60],{"url":66,"sources":67,"tags":68},"http://www.securityfocus.com/bid/84008",[57,51],[69,70],"VDB Entry","X Refsource BID",{"url":72,"sources":73,"tags":74},"http://www.debian.org/security/2016/dsa-3507",[57,51],[59,75],"X Refsource DEBIAN",{"url":77,"sources":78,"tags":79},"http://www.securitytracker.com/id/1035185",[57,51],[69,80],"X Refsource SECTRACK",{"url":82,"sources":83,"tags":84},"https://codereview.chromium.org/1713093002",[57,51],[85],"X Refsource CONFIRM",{"url":87,"sources":88,"tags":89},"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00028.html",[57,51],[59,60],{"url":91,"sources":92,"tags":93},"http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00015.html",[57,51],[59,60],{"url":95,"sources":96,"tags":97},"https://security.gentoo.org/glsa/201603-09",[57,51],[59,98],"X Refsource GENTOO",{"url":100,"sources":101,"tags":102},"https://code.google.com/p/chromium/issues/detail?id=584155",[57,51],[85],{"url":104,"sources":105,"tags":106},"http://www.ubuntu.com/usn/USN-2920-1",[57,51],[59,107],"X Refsource UBUNTU",{"url":109,"sources":110,"tags":111},"http://googlechromereleases.blogspot.com/2016/03/stable-channel-update.html",[57,51],[85],[],{"date":114,"score":47,"percentile":115},"2026-06-04",0.81105,[117,120,123,126,129,132,135,138,141,144,147,150,153,156,159,162,165,168,171,174,177,179,182,185,187,190,192,194,197,200,202,205,208,211,214,217,220,223,226,229,231,233,235,238,241,244,247,250,253,256,259,262,265,268,271,274,277,280,283,286,289,292,294,296,298,301,304,306,309,311,314,316,318,320,323,326,329,332,335,338,341,344,347,350,353,356,358,360,362,365],{"date":118,"score":47,"percentile":119},"2025-11-04",0.80112,{"date":121,"score":47,"percentile":122},"2025-11-05",0.80113,{"date":124,"score":47,"percentile":125},"2025-11-06",0.80114,{"date":127,"score":47,"percentile":128},"2025-11-07",0.80126,{"date":130,"score":47,"percentile":131},"2025-11-08",0.80132,{"date":133,"score":47,"percentile":134},"2025-11-09",0.80129,{"date":136,"score":47,"percentile":137},"2025-11-10",0.80123,{"date":139,"score":47,"percentile":140},"2025-11-11",0.80128,{"date":142,"score":47,"percentile":143},"2025-11-12",0.80142,{"date":145,"score":47,"percentile":146},"2025-11-13",0.80148,{"date":148,"score":47,"percentile":149},"2025-11-14",0.80153,{"date":151,"score":47,"percentile":152},"2025-11-15",0.80152,{"date":154,"score":47,"percentile":155},"2025-11-16",0.8015,{"date":157,"score":47,"percentile":158},"2025-11-17",0.80149,{"date":160,"score":47,"percentile":161},"2025-11-18",0.79113,{"date":163,"score":47,"percentile":164},"2025-11-19",0.79118,{"date":166,"score":47,"percentile":167},"2025-11-20",0.79124,{"date":169,"score":47,"percentile":170},"2025-11-21",0.80167,{"date":172,"score":47,"percentile":173},"2025-11-22",0.8017,{"date":175,"score":47,"percentile":176},"2025-11-23",0.80163,{"date":178,"score":47,"percentile":176},"2025-11-24",{"date":180,"score":47,"percentile":181},"2025-11-25",0.80165,{"date":183,"score":47,"percentile":184},"2025-11-26",0.80166,{"date":186,"score":47,"percentile":173},"2025-11-27",{"date":188,"score":47,"percentile":189},"2025-11-28",0.80162,{"date":191,"score":47,"percentile":181},"2025-11-29",{"date":193,"score":47,"percentile":170},"2025-11-30",{"date":195,"score":47,"percentile":196},"2025-12-01",0.80256,{"date":198,"score":47,"percentile":199},"2025-12-02",0.8026,{"date":201,"score":47,"percentile":199},"2025-12-03",{"date":203,"score":47,"percentile":204},"2025-12-04",0.80172,{"date":206,"score":47,"percentile":207},"2025-12-05",0.80177,{"date":209,"score":47,"percentile":210},"2025-12-06",0.80181,{"date":212,"score":47,"percentile":213},"2025-12-07",0.80182,{"date":215,"score":47,"percentile":216},"2025-12-08",0.80189,{"date":218,"score":47,"percentile":219},"2025-12-09",0.80204,{"date":221,"score":47,"percentile":222},"2025-12-10",0.80228,{"date":224,"score":47,"percentile":225},"2025-12-11",0.8024,{"date":227,"score":47,"percentile":228},"2025-12-12",0.80257,{"date":230,"score":47,"percentile":228},"2025-12-13",{"date":232,"score":47,"percentile":196},"2025-12-14",{"date":234,"score":47,"percentile":196},"2025-12-15",{"date":236,"score":47,"percentile":237},"2025-12-16",0.80267,{"date":239,"score":47,"percentile":240},"2025-12-17",0.80275,{"date":242,"score":47,"percentile":243},"2025-12-18",0.80294,{"date":245,"score":47,"percentile":246},"2025-12-19",0.80304,{"date":248,"score":47,"percentile":249},"2025-12-20",0.80297,{"date":251,"score":47,"percentile":252},"2025-12-21",0.8029,{"date":254,"score":47,"percentile":255},"2025-12-22",0.80287,{"date":257,"score":47,"percentile":258},"2025-12-23",0.80289,{"date":260,"score":47,"percentile":261},"2025-12-24",0.80308,{"date":263,"score":47,"percentile":264},"2025-12-25",0.80327,{"date":266,"score":47,"percentile":267},"2025-12-26",0.80325,{"date":269,"score":47,"percentile":270},"2025-12-27",0.80369,{"date":272,"score":47,"percentile":273},"2025-12-28",0.80314,{"date":275,"score":47,"percentile":276},"2025-12-29",0.80312,{"date":278,"score":47,"percentile":279},"2025-12-30",0.80318,{"date":281,"score":47,"percentile":282},"2025-12-31",0.8033,{"date":284,"score":47,"percentile":285},"2026-01-01",0.80416,{"date":287,"score":47,"percentile":288},"2026-01-02",0.80414,{"date":290,"score":47,"percentile":291},"2026-01-03",0.80411,{"date":293,"score":47,"percentile":279},"2026-01-04",{"date":295,"score":47,"percentile":273},"2026-01-05",{"date":297,"score":47,"percentile":279},"2026-01-06",{"date":299,"score":47,"percentile":300},"2026-01-07",0.80323,{"date":302,"score":47,"percentile":303},"2026-01-08",0.80334,{"date":305,"score":47,"percentile":303},"2026-01-09",{"date":307,"score":47,"percentile":308},"2026-01-10",0.80335,{"date":310,"score":47,"percentile":264},"2026-01-11",{"date":312,"score":47,"percentile":313},"2026-01-12",0.80315,{"date":315,"score":47,"percentile":276},"2026-01-13",{"date":317,"score":47,"percentile":303},"2026-01-14",{"date":319,"score":47,"percentile":303},"2026-01-15",{"date":321,"score":47,"percentile":322},"2026-01-16",0.80342,{"date":324,"score":47,"percentile":325},"2026-01-17",0.8035,{"date":327,"score":47,"percentile":328},"2026-01-18",0.80343,{"date":330,"score":47,"percentile":331},"2026-01-19",0.80336,{"date":333,"score":47,"percentile":334},"2026-01-20",0.80337,{"date":336,"score":47,"percentile":337},"2026-01-21",0.80345,{"date":339,"score":47,"percentile":340},"2026-01-22",0.80353,{"date":342,"score":47,"percentile":343},"2026-01-23",0.8038,{"date":345,"score":47,"percentile":346},"2026-01-24",0.8039,{"date":348,"score":47,"percentile":349},"2026-01-25",0.80382,{"date":351,"score":47,"percentile":352},"2026-01-26",0.80381,{"date":354,"score":47,"percentile":355},"2026-01-27",0.80384,{"date":357,"score":47,"percentile":355},"2026-01-28",{"date":359,"score":47,"percentile":349},"2026-01-29",{"date":361,"score":47,"percentile":352},"2026-01-30",{"date":363,"score":47,"percentile":364},"2026-01-31",0.80386,{"date":366,"score":47,"percentile":367},"2026-02-01",0.80477,[369],{"source":51,"cvss_v2_0":370,"cvss_v3_0":375,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":371,"baseSeverity":9,"vectorString":372,"impactScore":373,"exploitabilityScore":374},7.5,"AV:N/AC:L/Au:N/C:P/I:P/A:P",6.4,10,{"baseScore":49,"baseSeverity":376,"vectorString":52,"impactScore":49,"exploitabilityScore":374},"CRITICAL",[378],{"ecosystem":9,"name":379,"vendor":380,"product":379,"cpe_part":381,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":382},"chrome","google","a",[383],{"version":384,"is_range":385,"range_type":386,"version_start":9,"version_start_type":9,"version_end":387,"version_end_type":388,"fixed_in":9},"lte48.0.2564.116",true,"cpe","48.0.2564.116","including"]