Disclosed Chromium Security Bugs

CHECK failure: isolate_->IsOnCentralStack()

#385167053Reporter: 24...@project.gserviceaccount.com
$0
4/16/2025

The name attribute length on a PWA's manifest doesn't have a limit, which allows an attacker to spoof its message and origin

#40061287Reporter: he...@gmail.com
$1,000
4/16/2025

libyal:libewf_handle_fuzzer: Use-of-uninitialized-value in libewf_line_reader_read_data

#389974972Reporter: 87...@developer.gserviceaccount.com
$0
4/15/2025

TOCTOU in PersistentHistogramAllocator::GetHistogram

#378623799Reporter: bl...@gmail.com
$2,000
4/15/2025

Use after free in AddressSignInPromoView.

#385355879Reporter: ch...@gmail.com
$2,000
4/15/2025

Vulnerability: OSV-2024-460: UNKNOWN READ in glslang::TInfoSinkBase::location affecting GitOnBorg::chromium::chromium::src

#357737685Reporter: se...@google.com
$0
4/15/2025

pcapplusplus:FuzzTargetNg: Crash in pcpp::RawPacket::insertData

#390004170Reporter: 87...@developer.gserviceaccount.com
$0
4/14/2025

c-blosc2:decompress_frame_fuzzer: Heap-buffer-overflow in inflate

#389333854Reporter: 87...@developer.gserviceaccount.com
$0
4/14/2025

V8 Sandbox Bypass: AAR/W via generic function table `call_indirect` rtt check bypass

#350292240Reporter: se...@gmail.com
$20,000
4/12/2025

WasmGCTypeAnalyzer improperly revisits single-block loops, leading to type confusion

#383356864Reporter: ma...@popax21.dev
$55,000
4/11/2025
Showing 2051-2060 of 10189 bugs