Disclosed Chromium Security Bugs
←Back to DashboardOS Command Injection in tools/update_browser_revision.mjs — unvalidated CDN revision field passed to execSync() enables secret exfiltration on GitHub Actions CI runner
$0
8/18/2026
WebUI sandbox bypass via unvalidated icon_url in Affiliation API
$0
8/18/2026
DCHECK failure in opt_scope_info.has_value() in maglev-graph-builder.h
$0
8/18/2026
DCHECK failure in opt_scope_info.has_value() in maglev-graph-builder.h
$0
8/18/2026
Turboshaft WLE correctness bug: stale StringPrepareForGetCodeUnit result survives calls, leaks V8 heap pointers via charCodeAt
$1,000
8/18/2026
ANGLE Vulkan: Stale UBO descriptor range bypasses robustBufferAccess causing OOB read
$0
8/18/2026
Potential OOB Read in ChromeOS Video Capture Service via unvalidated HAL jpeg_size
$0
8/18/2026
DCHECK failure in state_ == kSpill in maglev-regalloc-node-info.h
$0
8/18/2026
Potential Wasm debug OSR on non-x64 causes frame size mismatch and memory corruption
$0
8/18/2026
mruby:mruby_proto_fuzzer: Heap-buffer-overflow in find_symbol
$0
8/17/2026