Disclosed Chromium Security Bugs

Potential use after move in the reset handlers in mojo::Remote

#334772639Reporter: ch...@google.com
$0
9/19/2024

DCHECK failure in state.GetPayload().is_initialized in maglev-regalloc-data.h

#346617164Reporter: 24...@project.gserviceaccount.com
$0
9/19/2024

UAF in ModelManagerImpl::CanCreateGenericSession

#336449367Reporter: zh...@gmail.com
$3,000
9/19/2024

AddressSanitizer: heap-use-after-free on Dawn

#345822331Reporter: de...@gmail.com
$10,000
9/19/2024

GPU process crash via WebGPU shader - UAF in SimplifyCFG at SimplifyCFG.cpp:4743

#344639860Reporter: wg...@gmail.com
$10,000
9/19/2024

DCHECK failure in (current) == nullptr in local-heap.cc

#346042374Reporter: 24...@project.gserviceaccount.com
$0
9/19/2024

Security: PEPC prompt renders outside initiator window in small windows

#341663594Reporter: al...@alesandroortiz.com
$2,000
9/18/2024

Missing type canonicalization for wasm exceptions JS API

#346197738Reporter: th...@chromium.org
$0
9/18/2024

Chrome crashes when dragging tab out during initiation of "Organize Tabs" function

#325293263Reporter: xp...@gmail.com
$3,000
9/18/2024

HeapBufferOverflow in GridNode::ConstructGridItems

#339686368Reporter: su...@gmail.com
$8,000
9/18/2024
Showing 3011-3020 of 10559 bugs