Disclosed Chromium Security Bugs

Integer wrap in ANGLE IndexRange allows WebGL OOB vertex fetch

#504175501Reporter: ra...@gmail.com
$2,000
8/13/2026

Potential Heap OOB write via size desynchronization in ANGLE D3D self-copy

#506377574Reporter: vm...@google.com
$0
8/13/2026

Potential arbitrary screen pixel leak via TOCTOU in CroppingWindowCapturerWin

#504557432Reporter: vm...@google.com
$0
8/13/2026

Potential integer overflow in ANGLE IndexRange bypasses software robust-buffer-access validation

#506375217Reporter: vm...@google.com
$0
8/13/2026

webnn_graph_impl_fuzzer_WebNNGraphImplFuzzer_GPU_SubgraphDQGemmQ_fuzzer: Incorrect-function-pointer-type in pack_weights_and_biases

#501948628Reporter: 24...@project.gserviceaccount.com
$0
8/13/2026

V8 Sandbox Bypass:LOCAL+frame OOB write in `SetLocalVariableValue`

#503553602Reporter: gr...@gmail.com
$5,000
8/13/2026

Potential stack buffer overflow in TFLite MEAN operation via arbitrary axis_count

#500048233Reporter: rj...@google.com
$0
8/13/2026

BoringSSL X.509 URI name constraint bypass — excluded domains evaded via userinfo (@), fragment (#), query (?), percent-encoding (%40), and port (:) in URI SAN

#502006234Reporter: su...@kentech.ac.kr
$0
8/13/2026

Crash in Builtins_InterpreterEntryTrampoline

#507120832Reporter: 24...@project.gserviceaccount.com
$0
8/13/2026

Heap-buffer-overflow in skcms clut() via a PNG iCCP mAB tag with output_channels=1 on the default Rust ICC path

#506010945Reporter: oj...@gmail.com
$2,000
8/13/2026
Showing 1091-1100 of 13102 bugs