Disclosed Chromium Security Bugs

Security: Heap-buffer-overflow in CommerceHintAgent::DidFinishLoadCallback

#40061704Reporter: me...@gmail.com
$2,500
2/21/2023

Crash in Builtins_StringEqual

#40061751Reporter: cl...@chromium.org
$0
2/21/2023

Security: Forced user interaction for permission prompts by freezing the browser

#40061230Reporter: re...@gmail.com
$3,000
2/20/2023

DCHECK failure in !HAS_WEAK_HEAP_OBJECT_TAG(ptr_) in tagged-impl-inl.h

#40061536Reporter: cl...@chromium.org
$0
2/20/2023

Security: ClientNativePixmapFactory implementations are probably not validating enough and should use checked math

#40061254Reporter: an...@chromium.org
$0
2/18/2023

wasm3:fuzzer: Crash in AcquireCodePageWithCapacity

#42521211Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
2/18/2023

Security: Heap-use-after-free in ReadAnythingCoordinator::CreateAndRegisterEntry

#40060288Reporter: me...@gmail.com
$4,000
2/17/2023

Security: Bypass 1342722, sourceMappingURL directive allows use of UNC paths on Windows

#40061586Reporter: ha...@gmail.com
$5,000
2/17/2023

Security: global-buffer-overflow in ash::default_user_image::GetRandomDefaultImageIndex()

#40061664Reporter: 0x...@gmail.com
$0
2/17/2023

v8_wasm_code_fuzzer: DCHECK failure in opcode >> 8 == kNumericPrefix in function-body-decoder-impl.h

#40061674Reporter: cl...@chromium.org
$0
2/17/2023
Showing 4951-4960 of 10816 bugs