Disclosed Chromium Security Bugs
←Back to DashboardI identified that the Chrome browser’s Reading List feature introduces an origin confusion issue by reordering domain names. This behavior can mislead users about the true origin of a website.
$500
7/30/2026
Use-After-Free in Page::OrdinaryPages() iteration via synchronous Navigation API abort
$0
7/30/2026
Info Leak: Missing clipboard sequence check in DataObjectItem::GetAsFile
$0
7/30/2026
Autofill preview info leak in appearance: base-select via font side-channel
$0
7/30/2026
Path Traversal in enterprise.reportingPrivate.setDeviceData Allows Arbitrary File Deletion
$0
7/30/2026
ANGLE Vulkan Out-of-bounds index read via stale index buffer offset
$0
7/30/2026
Robust Resource Initialization Bypass via Level Index Confusion in ANGLE
$0
7/30/2026
Heap-use-after-free in v8_inspector::InjectedScript::wrapObjectMirror due to context destruction in JS callback
$3,000
7/30/2026
Heap-UAF in RtpSenderBase::DetachTrackAndGetStopTask during SDP rollback
$0
7/30/2026
Potential LPE via Named Pipe Squatting and Mojo IPCz Handle Confusion in Google Updater
$0
7/30/2026