Disclosed Chromium Security Bugs

Security: Copy-on-write check bypass in JSNativeContextSpecialization::BuildElementAccess

#40061653Reporter: gl...@google.com
$0
2/16/2023

UAF in ScreenAIServiceRouter

#40061666Reporter: ha...@gmail.com
$5,000
2/16/2023

Security: heap-use-after-free in StreamFactory::DestroyMuter

#40061449Reporter: gl...@google.com
$0
2/15/2023

webcodecs_video_encoder_fuzzer: Heap-buffer-overflow in aom_variance64x64_avx2

#40061485Reporter: cl...@chromium.org
$0
2/15/2023

Security: UAF in VideoCaptureDeviceWin

#40061592Reporter: le...@gmail.com
$11,000
2/15/2023

Security: Bypass the Protection of input fields cache (Autofill) 1108181

#40060742Reporter: el...@gmail.com
$5,000
2/14/2023

Security: Design flaw in Synchronous Mojo message handling introduces unexpected reentrancy and allows for multiple UAFs

#40061398Reporter: gl...@google.com
$0
2/14/2023

UAF in ExtensionInstalledWaiter

#40061505Reporter: ha...@gmail.com
$2,000
2/14/2023

Trap in Builtins_CheckTurbofanType

#40061652Reporter: cl...@chromium.org
$0
2/14/2023

Security: V8: Missing TurboFan bounds check on DataView when buffer is resizable

#40060736Reporter: pi...@arm.com
$0
2/13/2023
Showing 4971-4980 of 10816 bugs