Disclosed Chromium Security Bugs

Crash in blink::HTMLDocumentParser::SchedulePumpTokenizer

#418125751Reporter: 24...@project.gserviceaccount.com
$0
8/24/2025

ffmpeg:ffmpeg_AV_CODEC_ID_WEBP_fuzzer: Index-out-of-bounds in exif_parse_ifd_list

#440144402Reporter: 87...@developer.gserviceaccount.com
$0
8/23/2025

glslang:compile_fuzzer: Crash in glslang::TInfoSinkBase::location

#438523603Reporter: 87...@developer.gserviceaccount.com
$0
8/23/2025

kimageformats:kimgio_tga_fuzzer: Heap-buffer-overflow in TGAHandler::read

#440374852Reporter: 87...@developer.gserviceaccount.com
$0
8/23/2025

blink_crabbyavif_decoder_fuzzer: Heap-use-after-free in _free_base

#418059407Reporter: 24...@project.gserviceaccount.com
$0
8/23/2025

webcodecs_image_decoder_fuzzer: Heap-use-after-free in ctx_refill

#417866876Reporter: 24...@project.gserviceaccount.com
$0
8/23/2025

DCHECK failure in IsUseLessGeneral(input_use_infos_[index], use_info) in simplified-lowering.cc

#417385084Reporter: 24...@project.gserviceaccount.com
$0
8/23/2025

CSA_DCHECK failed: Torque assert '!Is(val)' failed [src/objects/contexts.tq:280]

#417251443Reporter: na...@gmail.com
$0
8/23/2025

glslang:compile_fuzzer: Bad parameters to --sanitizer-annotate-contiguous-container in glslang::TPpContext::scanToken

#438295351Reporter: 87...@developer.gserviceaccount.com
$0
8/22/2025

mpv:fuzzer_loadfile: Global-buffer-overflow in exif_parse_ifd_list

#440157362Reporter: 87...@developer.gserviceaccount.com
$0
8/22/2025
Showing 181-190 of 8555 bugs