Disclosed Chromium Security Bugs

Vulnerability: Prototype Pollution affecting tough-cookie affecting GitOnBorg::chromium::infra::infra

#353344844Reporter: vu...@google.com
$0
11/5/2024

Vulnerability: Cross-site Scripting (XSS) affecting serialize-javascript affecting GitOnBorg::chromium::infra::infra

#353343444Reporter: vu...@google.com
$0
11/5/2024

Chrome iOS is Vulnerable to Permission Tapjacking

#341353783Reporter: fa...@gmail.com
$1,000
11/2/2024

dawn_lpm_fuzzer_vulkan_backend_with_tint: Heap-use-after-free in dawn::native::EncodingContext::HandleError

#355308275Reporter: 24...@project.gserviceaccount.com
$0
11/2/2024

Type Confusion between WasmObject and JSObject in V8 MaglevGraphBuilder::TryBuildFastOrdinaryHasInstance

#355256380Reporter: ki...@gmail.com
$7,000
11/1/2024

Security: SEGV_ACCERR in V8

#353628445Reporter: ki...@gmail.com
$7,000
11/1/2024

DCHECK failure in !is_compiled() in shared-function-info-inl.h

#354758515Reporter: 24...@project.gserviceaccount.com
$0
10/31/2024

Security: Internal Compiler Error(The continue construct with the continue target '16[%16]' is not structurally post dominated by the back-edge block '38[%38]') in tint::spirv::writer::IRFuzzer

#354627692Reporter: de...@gmail.com
$1,000
10/31/2024

Security: Internal Compiler Error(OpTypeFunction may not take more than 255 arguments. OpTypeFunction '267[%267]' has 256 arguments) in tint::spirv::writer::IRFuzzer

#354748060Reporter: de...@gmail.com
$10,000
10/31/2024

Security: FedCM prompt bubble can be obscured by Video/Document PiP window, allow for hidden login

#339654392Reporter: al...@alesandroortiz.com
$2,000
10/30/2024
Showing 2801-2810 of 10546 bugs