Disclosed Chromium Security Bugs
←Back to DashboardService-side UAF due to missing sync token update in C*RP:WillDrawInternal()
$10,000
8/13/2026
Mach port handle confusion in Browser process via CALayerParams copy-assignment
$0
8/13/2026
Potential Heap-use-after-free in ANGLE Vulkan vertex conversion via stale buffer handles
$0
8/13/2026
Potential UAF in ANGLE Vulkan via 32-bit ResourceSerial wrap and stale dynamic descriptor set
$0
8/13/2026
Potential Use-After-Free in AXTreeSourceAndroid via predictable virtual node ID collision
$0
8/13/2026
Potential Network Partition Drop in V0 Reporting API Allows Privacy Bypass
$0
8/13/2026
HTTP Request Smuggling via missing read clamp in DataPipeElementReader
$0
8/13/2026
Uninitialized heap disclosure in Network process via ChunkedDataPipeUploadDataStream
$0
8/13/2026
Potential information leak of URL fragments in COEP and DIP violation reports
$0
8/13/2026
DCHECK failure in !IsElement(*holder_) in lookup-inl.h
$0
8/13/2026