Disclosed Chromium Security Bugs
←Back to DashboardPotential UAF in V4L2VideoEncodeAccelerator bypassing MiraclePtr via cross-thread WeakPtr destruction
$0
7/23/2026
Potential Race Condition in VmaAllocator with VulkanFromANGLE and DrDc
$0
7/23/2026
Potential OOB read in AshMojomVideoConsumer::Frame::CreateSkBitmap via unvalidated content_rect
$0
7/23/2026
DriveFS ConnectToExtension allows sandbox escape via unvalidated target extension ID
$0
7/23/2026
mupdf:pdf_fuzzer: Crash in fz_unicode_from_glyph_name
$0
7/22/2026
libssh:ssh_client_config_fuzzer: Heap-buffer-overflow in ssh_config_parse_line_internal
$0
7/22/2026
Use-after-free of std::list iterator in FormFiller::UndoAutofill via duplicate FieldGlobalIds
$3,000
7/22/2026
Heap OOB read in ANGLE via `CubeMapArray` texture upload due to `endByte` underestimation in `ValidImageDataSize`
$3,000
7/22/2026
Security: double-free in blink::WebRtcVideoFrameAdapter::SharedResources::ScaleAndMapFrameAsync
$11,000
7/22/2026
Type confusion in BuildCheckSmi constant folding in V8/Maglev
$55,000
7/22/2026