Disclosed Chromium Security Bugs

libyal:libvsgpt_partition_fuzzer: Crash in libvsgpt_partition_entry_read_data

#541965639Reporter: 87...@developer.gserviceaccount.com
$0
9/12/2026

libxaac:xaac_enc_fuzzer: Index-out-of-bounds in iusace_estimate_scfs_chan

#531479957Reporter: 87...@developer.gserviceaccount.com
$0
9/12/2026

libaom:av1_enc_fuzzer: Crash in aom_compute_flow_at_point_c

#559075256Reporter: 87...@developer.gserviceaccount.com
$0
9/12/2026

pcapplusplus:FuzzTarget: Heap-buffer-overflow in pcpp::GREv1Layer::getAcknowledgmentNum

#544162564Reporter: 87...@developer.gserviceaccount.com
$0
9/12/2026

[V8 Sandbox Bypass] String.prototype.toWellFormed race yields a controlled native out-of-cage write

#541604100Reporter: gu...@gmail.com
$0
9/12/2026

Potential cross-origin VRAM leak in TextureManager PBO workarounds

#517337579Reporter: vm...@google.com
$0
9/12/2026

Potential FedCM clickjacking protection bypass on re-show via TabDialogManager

#514041087Reporter: vm...@google.com
$0
9/12/2026

BFCache and download throttle bypass via renderer-controlled is_context_menu_save IPC

#496616790Reporter: vi...@google.com
$0
9/12/2026

Potential info leak via unchecked flush/submit in WebGPUDecoderImpl::ClearSharedImageWithSkia

#517527943Reporter: vm...@google.com
$0
9/12/2026

WebGL OVR_multiview2 Oilpan Use-After-Free Enables Arbitrary Native Write

#543082390Reporter: am...@openai.com
$0
9/12/2026
Showing 1-10 of 13102 bugs