Disclosed Chromium Security Bugs

Browser-process blind SSRF / LNA bypass via Cast MEDIA_STATUS image URL

#499215943Reporter: vm...@google.com
$0
7/30/2026

Potential OOB GPU write in Dawn Metal backend via unreset depthPlane in texture workaround

#501499832Reporter: vm...@google.com
$0
7/30/2026

Potential GPU process OOB read on Android via AHardwareBuffer_lock on multi-planar formats

#497542735Reporter: vm...@google.com
$0
7/30/2026

Potential cross-origin credential disclosure via Android Autofill in HTTP Auth prompts

#501504245Reporter: vm...@google.com
$0
7/30/2026

Cross-origin history leak via SVG SMIL currentColor animation

#502631225Reporter: vm...@google.com
$0
7/30/2026

I identified that the Chrome browser’s Reading List feature introduces an origin confusion issue by reordering domain names. This behavior can mislead users about the true origin of a website.

#503346647Reporter: ah...@gmail.com
$500
7/30/2026

Use-After-Free in Page::OrdinaryPages() iteration via synchronous Navigation API abort

#502089411Reporter: vm...@google.com
$0
7/30/2026

Info Leak: Missing clipboard sequence check in DataObjectItem::GetAsFile

#501920294Reporter: vm...@google.com
$0
7/30/2026

Autofill preview info leak in appearance: base-select via font side-channel

#501779840Reporter: vm...@google.com
$0
7/30/2026

Path Traversal in enterprise.reportingPrivate.setDeviceData Allows Arbitrary File Deletion

#501467566Reporter: vm...@google.com
$0
7/30/2026
Showing 161-170 of 11922 bugs