Disclosed Chromium Security Bugs

Security: PiP window obscures FSA API file picker dialog (env var leak)

#428189824Reporter: al...@alesandroortiz.com
$5,000
11/22/2025

mediasource_MP2T_AVC_pipeline_integration_fuzzer: Crash in ff_put_h264_chroma_mc4_ssse3.next2rows

#435774159Reporter: 24...@project.gserviceaccount.com
$0
11/22/2025

kimageformats:kimgio_rgb_fuzzer: Use-of-uninitialized-value in SGIImagePrivate::readImage

#461671344Reporter: 87...@developer.gserviceaccount.com
$0
11/21/2025

kimageformats:kimgio_hdr_fuzzer: Use-of-uninitialized-value in QtPrivate::startsWith

#461335696Reporter: 87...@developer.gserviceaccount.com
$0
11/21/2025

arrow:parquet-arrow-fuzz: Heap-use-after-free in apache::thrift::protocol::TCompactProtocolT

#461058054Reporter: 87...@developer.gserviceaccount.com
$0
11/21/2025

`showSaveFilePicker()` DIalog can Overlaid on Other Origin lead to Origin Spoofing

#419721056Reporter: fr...@gmail.com
$1,000
11/21/2025

Chrome on Android: Spoof issue triggered by bottom address bar

#437147699Reporter: ch...@gmail.com
$5,000
11/21/2025

ANGLE: heap-use-after-free in RewriteStructSamplersTraverser::stripStructSpecifierSamplers()

#437825940Reporter: bi...@google.com
$0
11/21/2025

checkstyle:CheckstyleFuzzer: Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.statement

#462261562Reporter: 87...@developer.gserviceaccount.com
$0
11/20/2025

mruby:mruby_fuzzer: Use-of-uninitialized-value in mrb_bint_as_float

#442314447Reporter: 87...@developer.gserviceaccount.com
$0
11/20/2025
Showing 1051-1060 of 10164 bugs