Disclosed Chromium Security Bugs

mruby:mruby_proto_fuzzer: Heap-buffer-overflow in find_symbol

#547982150Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

harfbuzz:hb-subset-fuzzer: Use-of-uninitialized-value in iup_delta_optimize

#526770452Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

Potential Attestation Bypass via Hardcoded crossOrigin in iOS WebAuthn

#505254396Reporter: li...@chromium.org
$0
8/18/2026

Potential Use-After-Free in SimulcastEncoderAdapter during encoder reconfiguration

#504620824Reporter: vm...@google.com
$0
8/18/2026

Potential UAF in WebRTC RtpStreamsSynchronizer due to stale sync group pointer

#504599749Reporter: vm...@google.com
$0
8/18/2026

Site Isolation Bypass via Unvalidated FrameSinkId in Async Hit-Testing

#511742228Reporter: vm...@google.com
$0
8/18/2026

Missing IsInPrimaryMainFrame check in NetErrorTabHelper leads to SameSite=Strict bypass

#511814550Reporter: vm...@google.com
$0
8/18/2026

Race condition in Maglev's BuildStringConcat leads to out-of-bounds write

#511263221Reporter: vm...@google.com
$0
8/18/2026

Potential OOB Write in V8 RegExp JIT Compiler via Stale Peephole Jump Offsets

#511290389Reporter: vm...@google.com
$0
8/18/2026

Potential Absolute Memory Write in ANGLE GL Backend on macOS Intel via Unchecked Buffer Mapping

#511772608Reporter: vm...@google.com
$0
8/18/2026
Showing 451-460 of 12748 bugs