Disclosed Chromium Security Bugs

Chrome Custom Tab No Longer Tied to Parent App

#40067340Reporter: ho...@gmail.com
$0
11/11/2023

Security: Type cast failed in v8

#40068612Reporter: ki...@gmail.com
$8,000
11/11/2023

rdkit:mol_deserialization_fuzzer: Bad-cast to RDKit::ATOM_EQUALS_QUERY' (aka 'EqualityQuery') from Queries::XOrQuery in RDKit::QueryOps::finalizeQueryFromDescription

#42530041Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
11/10/2023

Security: Heap Buffer Overflow in mojo Message

#40059381Reporter: ha...@gmail.com
$1,000
11/9/2023

Security: Cursor hijacking mitigation bypass if iframe's content area is outside the top-layer content area

#40065759Reporter: ha...@gmail.com
$2,000
11/9/2023

Security: SKIA: integer overflow in sk_path_analyze_verbs.

#40067281Reporter: ma...@google.com
$0
11/9/2023

Security: heap-use-after-free in network::NetworkContext::DestroyURLLoaderFactory

#40067612Reporter: hi...@gmail.com
$2,000
11/9/2023

Security: Heap-use-after-free in HostResolverManager::Job::RunNextTask

#40067758Reporter: me...@gmail.com
$3,000
11/9/2023

Security: chrome.devtools.inspectedWindow.getResources allows resources from enterprise policy-blocked hosts

#40068091Reporter: ha...@gmail.com
$500
11/9/2023

Security: Debug check failed: page->area_size() >= static_cast(page->live_bytes())

#40068268Reporter: dd...@gmail.com
$10,000
11/9/2023
Showing 4071-4080 of 10725 bugs