Disclosed Chromium Security Bugs

DCHECK failure in allow_empty_handle || !v8::internal::ValueHelper::IsEmpty(that) in api-inl.h

#40075250Reporter: cl...@chromium.org
$0
1/26/2024

Heap-use-after-free in ash::TrayBubbleWrapper::ShowBubble

#40071589Reporter: cl...@chromium.org
$0
1/25/2024

v8_wasm_compile_fuzzer: DCHECK failure in index.valid() in sidetable.h

#40074628Reporter: cl...@chromium.org
$0
1/25/2024

Heap-use-after-free in ash::UnifiedSystemTrayBubble::UpdateBubbleBounds

#40074642Reporter: cl...@chromium.org
$0
1/25/2024

sqlite3_shadow_table_fuzzer: Incorrect-function-pointer-type in sqlite3VdbeMemGrow

#40074756Reporter: le...@gmail.com
$0
1/25/2024

Security: Persistent XSS via malicious user-uploaded PaymentRequest manifest and service worker

#40936265Reporter: se...@gmail.com
$16,000
1/25/2024

WiFi Password from Policy Uncensored in ChromeOS

#40070889Reporter: ch...@appspot.gserviceaccount.com
$0
1/24/2024

sqlite3_select_printf_lpm_fuzzer: Incorrect-function-pointer-type in vdbeMemClearExternAndSetNull

#40074731Reporter: cl...@chromium.org
$0
1/24/2024

DCHECK failure in (minor_marking_state_) == nullptr in concurrent-marking.cc

#40074759Reporter: cl...@chromium.org
$0
1/23/2024

Fatal error in Type cast failed in CAST(LoadFromParentFrame(InterpreterFrameConstants::kContext

#40074797Reporter: cl...@chromium.org
$0
1/23/2024
Showing 3731-3740 of 10591 bugs