Disclosed Chromium Security Bugs

Crash in Builtins_JumpIfToBooleanTrueHandler

#455069756Reporter: 24...@project.gserviceaccount.com
$0
2/2/2026

DCHECK failure in left != right in macro-assembler-arm.cc

#454841548Reporter: 24...@project.gserviceaccount.com
$0
2/1/2026

libvpx:vpx_enc_fuzzer_vp8: Use-of-uninitialized-value in vp8_diamond_search_sadx4

#479896934Reporter: 87...@developer.gserviceaccount.com
$0
1/31/2026

gpsd:FuzzDrivers: Use-of-uninitialized-value in aivdm_analyze

#479564939Reporter: 87...@developer.gserviceaccount.com
$0
1/31/2026

libraw:libraw_fuzzer: Index-out-of-bounds in LibRaw::ahd_interpolate_r_and_b_in_rgb_and_convert_to_cielab

#476973671Reporter: 87...@developer.gserviceaccount.com
$0
1/31/2026

cmake:cmELFFuzzer: Container-overflow in cmELFInternalImpl::GetNumberOfSections

#479251884Reporter: 87...@developer.gserviceaccount.com
$0
1/31/2026

Incorrect Optimization of ArrayConstructor by Maglev Leads to Creation of Malformed JSArray Objects

#454485895Reporter: hu...@gmail.com
$50,000
1/31/2026

V8 Sandbox Bypass: Wasm streaming compilation cache confusion via "double streaming"

#452605804Reporter: se...@gmail.com
$20,000
1/31/2026

DCHECK failure in !value->properties().is_conversion() in maglev-interpreter-frame-state.h

#454364323Reporter: 24...@project.gserviceaccount.com
$0
1/31/2026

DCHECK failure in TCPReadableStreamWrapper::Pull()

#453147449Reporter: i....@gmail.com
$4,000
1/31/2026
Showing 481-490 of 10084 bugs