Disclosed Chromium Security Bugs

ntopng:fuzz_dissect_packet: Heap-buffer-overflow in Flow::dissectBittorrent

#402195194Reporter: 87...@developer.gserviceaccount.com
$0
6/9/2025

V8 Sandbox Bypass: OOB write in JsonStringifier::TrySerializeSimplePropertyKey

#398773898Reporter: v8...@gmail.com
$5,000
6/7/2025

V8 sandbox violation in icu_74::UnicodeString::doAppend

#393989622Reporter: v8...@gmail.com
$5,000
6/7/2025

debugger/debug/wasm/debug-enabled-tier-down-wasm-streaming starts flaking

#399002829Reporter: ma...@chromium.org
$0
6/6/2025

CHECK failure: it != map_.end() in register-allocator-verifier.cc

#396460489Reporter: 24...@project.gserviceaccount.com
$0
6/6/2025

Security: Bypass the Protection of input fields cache (Autofill) ,and Autofill popup can be made hidden

#40068001Reporter: el...@gmail.com
$1,000
6/6/2025

Permission element inner span height of 100% can be abused if no element in the parent chain has any height set.

#398803201Reporter: an...@google.com
$0
6/6/2025

heap-use-after-free in blink::LegacyDOMSnapshotAgent::VisitNode

#395032416Reporter: as...@gmail.com
$3,000
6/5/2025

Passing HeapNumbers to runtime functions is unsafe

#397187119Reporter: ma...@chromium.org
$0
6/5/2025

Security UI Bypass - Response Injection in Chrome Devtools AI Assistance - links are not sanitized

#395406957Reporter: ci...@gmail.com
$1,000
6/5/2025
Showing 1881-1890 of 10189 bugs