Disclosed Chromium Security Bugs

v8_wasm_compile_fuzzer: Null-dereference WRITE in v8::internal::Simulator::WriteW

#40059312Reporter: cl...@chromium.org
$0
7/15/2022

DCHECK failure in osr_cache->FindEntry(*shared, osr_offset) == -1 in osr-optimized-code-cache.cc

#40059325Reporter: cl...@chromium.org
$0
7/15/2022

Security: UAF in BookmarkDragHelper

#40058534Reporter: jt...@gmail.com
$3,000
7/14/2022

Type confusion in handling of accessor in ReduceNamedAccess

#40059183Reporter: mm...@semmle.com
$0
7/14/2022

DCHECK failure in !try_catch.HasCaught() in d8.cc

#40059306Reporter: cl...@chromium.org
$0
7/14/2022

DCHECK failure in static_cast(index) < static_cast(length()) in fixed-array-in

#40059287Reporter: cl...@chromium.org
$0
7/13/2022

Google Chrome WebGPU DoBufferDestroy kDirect allocation use-after-free vulnerability - TALOS-2022-1508

#40059289Reporter: vu...@sourcefire.com
$10,000
7/13/2022

Security: Possible to escape sandbox via devtools_page and Feedback app

#40052870Reporter: de...@gmail.com
$15,000
7/12/2022

heap-use-after-free in TabGroupModel::GetTabGroup

#40057929Reporter: st...@gmail.com
$3,000
7/12/2022

Security: UAF after adding undocked DevTools tab to a group

#40058650Reporter: de...@gmail.com
$5,000
7/12/2022
Showing 5611-5620 of 10901 bugs