Disclosed Chromium Security Bugs

V8 Sandbox Bypass: Memory corruption outside the V8 sandbox

#381999810Reporter: ki...@gmail.com
$5,000
3/15/2025

FedCM prompt showing up on wrong tab

#362427434Reporter: es...@chromium.org
$0
3/15/2025

Array out-of-bounds access vulnerability in the maglev phi untagging optimization.

#382190919Reporter: hu...@gmail.com
$20,000
3/14/2025

DCHECK failure in Asm().conceptually_in_a_block() in assembler.h

#382135577Reporter: 24...@project.gserviceaccount.com
$0
3/14/2025

Arbitrary Wasm type confusion due to missing struct field mutability check on canonicalization

#382291459Reporter: se...@gmail.com
$55,000
3/14/2025

openbabel:fuzz_convert: Index-out-of-bounds in OpenBabel::transform3d::DescribeAsString

#383911303Reporter: 87...@developer.gserviceaccount.com
$0
3/13/2025

dawn_wire_server_and_vulkan_backend_fuzzer: Heap-use-after-free in dawn::native::Adapter::~Adapter

#382147425Reporter: 24...@project.gserviceaccount.com
$0
3/13/2025

Crash in unsigned int v8::base::AsAtomicImpl::Relaxed_Load

#381332096Reporter: 24...@project.gserviceaccount.com
$0
3/13/2025

V8 sandbox violation in v8::internal::MutablePageMetadata::SweepingDone

#382147423Reporter: sa...@google.com
$0
3/13/2025

DCHECK failure in !chunk->InWritableSharedSpace() in isolate-utils-inl.h

#381129881Reporter: 24...@project.gserviceaccount.com
$0
3/13/2025
Showing 2131-2140 of 10209 bugs