Disclosed Chromium Security Bugs

Potential cross-listener message spoofing in WebView via shared prerender queue

#502444677Reporter: vm...@google.com
$0
7/28/2026

Potential silent external app launch from CCT via OpenURL with NEW_BACKGROUND_TAB

#502173136Reporter: vm...@google.com
$0
7/28/2026

Potential bypass of biometric re-authentication for passwords via Credential Management API

#503642586Reporter: rj...@google.com
$0
7/28/2026

Heap-use-after-free in `remoting::PamAuthorizer::GetNextMessage` / `OnMessageProcessed`

#502461760Reporter: da...@gmail.com
$500
7/28/2026

SkSL Compilation Privilege Bypass in PaintOpReader via Non-kSkSLCommand Shader Types

#496419374Reporter: vm...@google.com
$0
7/28/2026

Remove DevicePostureProvider emulation methods to prevent Site Isolation bypass

#496095145Reporter: vm...@google.com
$0
7/28/2026

Cross-origin device posture spoofing and DoS via OverrideDevicePostureForEmulation

#496088449Reporter: vm...@google.com
$0
7/28/2026

Potential Use-After-Free in SessionAuthzAuthenticator via synchronous teardown

#501376612Reporter: vm...@google.com
$0
7/28/2026

Stale GPU Memory Disclosure via ANGLE Stencil Clear Bypass

#500528864Reporter: vm...@google.com
$0
7/28/2026

Potential Use-After-Free in ANGLE D3D11 Buffer11 via Cache Self-Eviction

#498881735Reporter: vm...@google.com
$0
7/28/2026
Showing 261-270 of 11922 bugs