Disclosed Chromium Security Bugs

DCHECK failure in IsSmi(element) || (IsHoleyElementsKind(KindTraits::Kind) && IsTheHole(element, i

#337069178Reporter: 24...@project.gserviceaccount.com
$0
8/6/2024

V8 sandbox violation in v8::base::Flags::

#333829668Reporter: 24...@project.gserviceaccount.com
$0
8/6/2024

Heap-use-after-free in gpu::SharedContextState::MarkContextLost

#336589468Reporter: 24...@project.gserviceaccount.com
$0
8/3/2024

Heap-use-after-free in base::internal::CrashImmediatelyOnUseAfterFree

#336655184Reporter: 24...@project.gserviceaccount.com
$0
8/3/2024

UAF in GrDrawOpAtlas (with --headless mode)

#40075655Reporter: em...@gmail.com
$10,000
8/3/2024

GPU process crash via WebGPU shader - placeSplitBlockCarefully in LoopSimplify.cpp

#333508731Reporter: wg...@gmail.com
$10,000
8/2/2024

DCHECK failure in length.smi > 0 in maglev-graph-builder.cc

#336851824Reporter: 24...@project.gserviceaccount.com
$0
8/2/2024

Security: Google Chrome MetalCompiler OOB Access Vulnerability

#40074630Reporter: pw...@gmail.com
$7,000
8/1/2024

Check failed: !v8::internal::v8_flags.enable_slow_asserts.value() || (IsWasmExportedFunction(*this))

#336399251Reporter: ki...@gmail.com
$8,000
8/1/2024

Security: Heap-use-after-free in Browser::GetBrowserForOpeningWebUi

#40066754Reporter: ch...@gmail.com
$3,000
8/1/2024
Showing 3171-3180 of 10559 bugs