Disclosed Chromium Security Bugs

Arbitrary Wasm type confusion due to transient canonical index overflow

#400086889Reporter: se...@gmail.com
$62,000
6/17/2025

ffmpeg:ffmpeg_dem_ASF_fuzzer: Use-of-uninitialized-value in av_strdup

#403675492Reporter: 87...@developer.gserviceaccount.com
$0
6/16/2025

javaparser:parseFuzzer: Security exception in com.github.javaparser.CommentsInserter.insertComments

#403673835Reporter: 87...@developer.gserviceaccount.com
$0
6/16/2025

openjpeg:opj_decompress_fuzzer_JP2: Heap-buffer-overflow in opj_j2k_read_tile_header

#403673832Reporter: 87...@developer.gserviceaccount.com
$0
6/16/2025

DCHECK failure in (opcode >> 8) == kAsmJsPrefix in function-body-decoder-impl.h

#401053598Reporter: 24...@project.gserviceaccount.com
$0
6/15/2025

Chrome's updater.exe is prone to privilege escalation through privileged file deletion

#400740865Reporter: s3...@gmx.net
$10,000
6/14/2025

UAF in in Tab::OnMouseReleased(class ui::MouseEvent const &) in browser process

#401393576Reporter: 0x...@gmail.com
$3,000
6/14/2025

SIGSEGV in v8 regexp

#390743124Reporter: ki...@gmail.com
$7,000
6/13/2025

gpu_swangle_passthrough_fuzzer: Incorrect-function-pointer-type in rx::vk::priv::SecondaryCommandBuffer::executeCommands

#41483796Reporter: cl...@chromium.org
$0
6/13/2025

javaparser:parseFuzzer: Security exception in com.github.javaparser.GeneratedJavaParserBase.lambda$propagateRangeGrowthOnRight

#403364350Reporter: 87...@developer.gserviceaccount.com
$0
6/12/2025
Showing 1861-1870 of 10189 bugs