Disclosed Chromium Security Bugs

GPU failure in blink::ReparentParentScopes

#40073707Reporter: cl...@chromium.org
$0
1/5/2024

gpu_raster_swangle_passthrough_fuzzer: Incorrect-function-pointer-type in VmaAllocator_T::AllocateVulkanMemory

#40073084Reporter: cl...@chromium.org
$0
1/4/2024

Use-after-poison in blink::HTMLSlotElement::DetachLayoutTree

#40073481Reporter: cl...@chromium.org
$0
1/4/2024

tint_wgsl_reader_spv_writer_fuzzer: Heap-use-after-free in tint::core::ir::transform::RunShaderIOBase

#40073543Reporter: cl...@chromium.org
$0
1/4/2024

Security: Improper origin elision in downloads prompt initiated in Chrome Custom Tab (Android)

#40062398Reporter: ha...@gmail.com
$1,000
1/3/2024

Security: Chrome iOS

#40064410Reporter: ia...@gmail.com
$1,000
1/3/2024

Security: Chrome iOS iframe SandBox Download

#40064579Reporter: ia...@gmail.com
$1,000
1/3/2024

Security: Chromium illegally paints outside of iframe when using -webkit-box-reflect

#40071326Reporter: pr...@gmail.com
$0
1/3/2024

Security: UAF in base::win::MessageWindow::WindowProc

#40072651Reporter: ki...@gmail.com
$4,000
1/3/2024

potentional UAF

#40073299Reporter: li...@gmail.com
$0
1/3/2024
Showing 3931-3940 of 10721 bugs