Disclosed Chromium Security Bugs
←Back to DashboardPotential Sandbox Escape via UAF in AXTreeManagerMap due to IFastRundown Race
$0
7/30/2026
Potential heap buffer underflow in FFmpeg mov_read_lhvc due to integer truncation (32-bit platforms)
$0
7/30/2026
Intl.Collator/PluralRules/DateTimeFormat still use Managed<>->raw() not ->get()
$5,000
7/30/2026
Missing validation of subsample metadata in MediaFoundation decryption path allows sandbox escape
$0
7/30/2026
Use-After-Free in SVGElement::SynchronizeAttributeInShadowInstances via sync blur
$0
7/30/2026
Browser-process blind SSRF / LNA bypass via Cast MEDIA_STATUS image URL
$0
7/30/2026
Potential OOB GPU write in Dawn Metal backend via unreset depthPlane in texture workaround
$0
7/30/2026
Potential GPU process OOB read on Android via AHardwareBuffer_lock on multi-planar formats
$0
7/30/2026
Potential cross-origin credential disclosure via Android Autofill in HTTP Auth prompts
$0
7/30/2026
Cross-origin history leak via SVG SMIL currentColor animation
$0
7/30/2026