Disclosed Chromium Security Bugs

V8 correctness failure in sources: 31

#340663085Reporter: 24...@project.gserviceaccount.com
$0
8/22/2024

DCHECK failure in values_[index] != builder()->jsgraph()->OptimizedOutConstant() in bytecode-graph

#339684349Reporter: 24...@project.gserviceaccount.com
$0
8/22/2024

use-after-free at browser_user_education_service.cc:120

#340098902Reporter: xp...@gmail.com
$2,000
8/21/2024

Security: heap-use-after-free in blink::internal::IdleRequestCallbackWrapper::TimeoutFired

#339287000Reporter: zh...@gmail.com
$8,000
8/21/2024

Check failed: !v8::internal::v8_flags.enable_slow_asserts.value() || (IsJSObject_NonInline(*this)).

#339753685Reporter: jo...@gmail.com
$0
8/21/2024

DCHECK failure in AllowGarbageCollection::IsAllowed() in parked-scope-inl.h

#339683478Reporter: 24...@project.gserviceaccount.com
$0
8/21/2024

DCHECK failure in owner == interpreter::Register::current_context() || (is_exception_handler() &&

#339704598Reporter: 24...@project.gserviceaccount.com
$0
8/21/2024

UAF in ParseDarkColorOverride

#339788215Reporter: ha...@gmail.com
$7,000
8/20/2024

RCE in V8 maglev

#340221135Reporter: oc...@gmail.com
$7,000
8/20/2024

GPU process crash via WebGPU shader - OOB in WriteInstruction at BitcodeWriter.cpp:1720

#338161969Reporter: wg...@gmail.com
$10,000
8/20/2024
Showing 3121-3130 of 10559 bugs