Disclosed Chromium Security Bugs
←Back to DashboardAreRequestHeadersSafe() missing Origin and Sec-* prefix blocking — compromised renderer forges Origin and Sec-Fetch-* headers via modified_headers in FollowRedirect
$1,000
8/13/2026
GPU memory leak via uninitialized locals in hardened ANGLE contexts
$0
8/13/2026
ARM64 MOPS register clobber mismodeling in V8 leads to in-sandbox OOB access
$0
8/13/2026
Renderer UAF in PostMessageSupport::SetActive via structured-clone getters
$0
8/13/2026
Potential GPU Info Leak via Dawn TransientAttachment Validation Bypass
$0
8/13/2026
V8 TryFastAddDataProperty descriptor-array OOB access
$55,000
8/13/2026
Potential Heap-buffer-overflow in libaom av1_rc_scene_detection_onepass_rt via WebCodecs
$0
8/13/2026
HTTP Request Smuggling via IndexedDB Blob Size Forgery and DataPipe Underflow
$0
8/13/2026
Information Leak: Autofill preview length leak via textarea.scrollTop
$0
8/13/2026
Potential Use-After-Free in PassthroughTouchEventQueue during synchronous touch ACK processing
$0
8/13/2026