Disclosed Chromium Security Bugs

Security: Chrome for Android Cancel Enter Fullscreen able to Hide Omnibox

#40058878Reporter: su...@gmail.com
$3,000
6/24/2022

Security: Debug check failed: type.representation() == MachineRepresentation::kFloat64 || type.representation() == MachineRepresentation::kTagged.

#40059026Reporter: p4...@gmail.com
$8,500
6/24/2022

Security: UAF in ViewsAXTreeManager

#40058092Reporter: le...@gmail.com
$20,000
6/23/2022

Security: [ANGLE] Heap overflow read in vk::IndexBuffer::getIndexBuffers

#40058837Reporter: gg...@gmail.com
$7,000
6/23/2022

gpu_raster_fuzzer: Use-of-uninitialized-value in cc::ServiceImageTransferCacheEntry::Deserialize

#40058941Reporter: cl...@chromium.org
$0
6/23/2022

AddressSanitizer: use-after-poison in blink::WebrtcVideoPerfReporter::InitializeOnTaskRunner webrtc_video_perf_reporter.cc:36

#40059077Reporter: m....@gmail.com
$6,000
6/23/2022

Security: TrustedTypes does not block assignment when modifying existing attribute value via nodeValue/textContent

#40058798Reporter: ma...@gmail.com
$1,000
6/22/2022

Security: Potential Use After Free in ManagedValueStoreCache::OnPolicyUpdated

#40059024Reporter: vi...@gmail.com
$1,000
6/22/2022

Security: Form validation UI dialog can cover whole page

#40057645Reporter: st...@gmail.com
$1,000
6/21/2022

rdkit:smiles_string_to_mol_fuzzer: Object-size in SmilesParseOps::parser::finalizePolymerSGroup

#42512380Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
6/21/2022
Showing 5661-5670 of 10902 bugs