Disclosed Chromium Security Bugs
←Back to DashboardDCHECK failure in v8_flags.assert_hole_checked_by_value implies !SafeIsAnyHole(obj) in heap-object
$0
1/1/2026
Crash in v8::internal::Map::instance_type
$0
1/1/2026
checkstyle:CheckstyleFuzzer: Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr
$0
12/31/2025
mruby:mruby_fuzzer: Use-of-uninitialized-value in scope_new
$0
12/31/2025
checkstyle:CheckstyleFuzzer: Security exception in com.puppycrawl.tools.checkstyle.JavaAstVisitor.getInnerBopAst
$0
12/31/2025
Wasm type confusion due to custom descriptors spec ambiguity in `ref.get_desc` exactness typing
$55,000
12/31/2025
Wasm type confusion due to missing exactness check on JS-Wasm boundary
$55,000
12/31/2025
Wasm type confusion due to wrong reachability analysis in `WasmGCTypeAnalyzer::ProcessBranchOnTarget()` with custom descriptor casts
$55,000
12/31/2025
Wasm type confusion due to custom descriptors spec unsoundness on `ref.func` exact typing
$55,000
12/31/2025
Wasm type confusion due to spec unsoundness in `cast_desc` operations
$55,000
12/31/2025