Disclosed Chromium Security Bugs
←Back to DashboardSecurity: Race Condition Double Free in i915_gem_set_tiling_ioctl
$0
1/19/2024
Security: heap after free at `RenderFrameHostManager::GetFrameHostForNavigation`
$1,000
1/19/2024
Security: UAF in blink::CanvasResourceDispatcher::OnBeginFrame
$0
1/19/2024
tint_wgsl_fuzzer: Heap-buffer-overflow in tint::SymbolTable::RegisterInternal
$0
1/19/2024
Security: heap-buffer-overflow vrend_write_to_iovec
$250
1/18/2024
Security: SOP bypass: Portal activation bypasses same-page drag and drop source check
$3,000
1/18/2024
UAF in vk::Buffer::getOffsetPointer
$11,000
1/18/2024
Crash in blink::AXObjectCacheImpl::RemoveSubtreeWithFlatTraversal
$0
1/18/2024
Security: Debug check failed: !can_be_invalid implies result.valid() in v8/src/compiler/turboshaft/optimization-phase.h:224
$0
1/18/2024
Security: heap-use-after-free on BrandcodeConfigFetcher::OnSimpleLoaderComplete
$3,000
1/18/2024