Disclosed Chromium Security Bugs

Drag and Drop Can Navigate to File and Chrome URIs Without Restriction

#342579972Reporter: fa...@gmail.com
$500
7/11/2025

Improper Error Handling in LateLoadElimination for String Map in Turboshaft Leads to RCE

#403211343Reporter: hu...@gmail.com
$50,000
7/11/2025

V8 Sandbox Bypass: SP/PC control via Wasm JSPI central stack top confusion

#404285918Reporter: se...@gmail.com
$20,000
7/11/2025

Avoid GetHeapFromWritableObject and friends

#396607238Reporter: cl...@chromium.org
$0
7/11/2025

checkstyle:CheckstyleFuzzer: Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr

#429489019Reporter: 87...@developer.gserviceaccount.com
$0
7/10/2025

tinyusb:net: Null-dereference READ in ubsan_GetStackTrace

#430399223Reporter: 87...@developer.gserviceaccount.com
$0
7/10/2025

Vulnerability: Upgrade thenify to 3.3.1 in GoB repo chromium/catapult

#404070296Reporter: au...@google.com
$0
7/10/2025

DCHECK failure in new_space->TotalCapacity() <= new_space->MaximumCapacity() in heap.cc

#407817244Reporter: 24...@project.gserviceaccount.com
$0
7/10/2025

checkstyle:CheckstyleFuzzer: Security exception in com.puppycrawl.tools.checkstyle.grammar.java.JavaLanguageParser.expr

#422320289Reporter: 87...@developer.gserviceaccount.com
$0
7/9/2025

javaparser:parseFuzzer: Security exception in com.github.javaparser.CommentsInserter.insertComments

#409585561Reporter: 87...@developer.gserviceaccount.com
$0
7/9/2025
Showing 181-190 of 8283 bugs