Disclosed Chromium Security Bugs

Potential type confusion and OOB read in libxslt xsltParseTemplateContent

#503879106Reporter: rj...@google.com
$0
8/4/2026

ActorNavigationThrottle policy bypass via same-origin subframe navigation

#502777516Reporter: vm...@google.com
$0
8/4/2026

Potential cross-origin permission spoofing via location.reload() 302 redirect

#502368088Reporter: vm...@google.com
$0
8/4/2026

Potential TOCTOU in Actor Login allows same-site cross-origin credential leak

#500095743Reporter: vm...@google.com
$0
8/4/2026

UAF and BRP bypass in WidgetBaseInputHandler::HandleTouchEvent leading to Renderer RCE

#498991983Reporter: vm...@google.com
$0
8/4/2026

Missing VideoDecoderConfig validation in MojoDecryptorService

#498728857Reporter: vm...@google.com
$0
8/4/2026

Heap buffer overflow in Blink animation timing

#493534964Reporter: sh...@gmail.com
$2,000
8/4/2026

Potential Use-After-Free in ManualFillInjectionHandler during asynchronous Face ID re-authentication

#505191883Reporter: li...@chromium.org
$0
8/4/2026

Missing lifetime check in SpdyStream::IncreaseRecvWindowSize leads to use-after-free in Network Service

#503420443Reporter: je...@gmail.com
$43,000
8/4/2026

OOB GPU memory write in ANGLE Vulkan via unscaled YUV plane offsets

#500063836Reporter: vm...@google.com
$0
8/4/2026
Showing 431-440 of 12354 bugs