Disclosed Chromium Security Bugs
←Back to Dashboardjackson-dataformat-xml:XmlDeserializerFuzzer: Security exception in com.fasterxml.jackson.databind.deser.SettableBeanProperty.deserialize
$0
1/20/2025
tinyusb:cdc: Use-of-uninitialized-value in usbd_edpt_open
$0
1/20/2025
tinyusb:msc: Segv on unknown address in tud_task_ext
$0
1/20/2025
Type confusion due to DefaultReferenceValue() `undefined` default value for kNoExtern
$55,000
1/18/2025
Reporting API is not isolated for Content Scripts
$0
1/18/2025
DCHECK failure in can_throw == CanThrow::kNo implies lazy_deopt_on_throw == LazyDeoptOnThrow::kNo
$0
1/18/2025
Security: Trick user into thinking they have escaped fullscreen on MacOS
$3,000
1/17/2025
Arbitrary WASM type confusion due to module confusion in wasm-to-js tier-up
$11,000
1/17/2025
Security: https://bugs.chromium.org/p/chromium/issues/detail?id=1259694 can be reproduced
$1,000
1/17/2025
Heap-use-after-free in skgpu::graphite::DawnCommandBuffer::bindTextureAndSamplers
$0
1/17/2025