Disclosed Chromium Security Bugs

tint_renamer_fuzzer: Use-of-uninitialized-value in tint::reader::wgsl::ParserImpl::sync_to

#40060422Reporter: cl...@chromium.org
$0
11/3/2022

AddressSanitizer: heap-use-after-free html_element.cc:1802 in blink::HTMLElement::offsetTopForBindin

#40060030Reporter: m....@gmail.com
$5,000
11/2/2022

Security: = prepended in document.cookie allows to bypass __Secure and __Host prefixes

#40060319Reporter: ha...@gmail.com
$2,000
11/2/2022

Security: heap-use-after-free chrome/browser/enterprise/browser_management/browser_management_status_provider.cc

#40060048Reporter: rh...@gmail.com
$0
11/1/2022

Security: UAF in OnAccessTokenRefreshFailed

#40060220Reporter: ya...@gmail.com
$3,000
11/1/2022

UAF in AccessCodeCastSinkService

#40060334Reporter: ha...@gmail.com
$9,500
11/1/2022

Security: Code Injection in WebUI page leading to sandbox escape

#40060348Reporter: jt...@gmail.com
$5,000
11/1/2022

tint_single_entry_point_fuzzer: Container-overflow in tint::reader::wgsl::ParserImpl::sync_to

#40060401Reporter: cl...@chromium.org
$0
11/1/2022

Security: type confusion in chrome

#40060314Reporter: wx...@gmail.com
$1,000
10/31/2022

CrOS: Vulnerability reported in app-admin/rsyslog

#40059688Reporter: vo...@appspot.gserviceaccount.com
$0
10/30/2022
Showing 5301-5310 of 10856 bugs