Disclosed Chromium Security Bugs
←Back to DashboardPotential Safe Browsing bypass for nested archives in DMGs due to logic errors in DMGAnalyzer
$0
8/13/2026
Potential Use-After-Free in UserScriptSet::UpdateUserScripts via shared memory mapping failure
$0
8/13/2026
Fenced frame `_unfencedTop` navigation leaks `initiator_origin` to destination via `Sec-Fetch-Site`
$3,000
8/13/2026
VerifyInitiatorOrigin() skips HostsOrigin() process lock check for opaque origins in error documents and MHTML subframes
$2,000
8/13/2026
Previous page executes JS after navigation, allowing history.back() tab hijack
$2,000
8/13/2026
Popup window tab doesn't show the origin correctly
$1,000
8/13/2026
Site Isolation bypass via error page precursors and sandboxed srcdoc frames
$0
8/13/2026
Parser differential in experimental Rust XML lexer via chunk boundaries
$0
8/13/2026
Info leak of global UMA data via metricsPrivate.getHistogram in chrome-untrusted://
$0
8/13/2026
Potential cross-origin info leak via uninitialized Skia stencil buffer
$0
8/13/2026