Disclosed Chromium Security Bugs

Security: TFC WebTransport bug

#40057641Reporter: jt...@gmail.com
$0
1/26/2022

rdkit:mol_data_stream_to_mol_fuzzer: Bad-cast to Queries::Query from invalid vptr in std::__1::__shared_ptr_pointer*, s

#42507772Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
1/24/2022

Dangling markup attack through background attribute allows data exfiltration

#40051154Reporter: he...@gmail.com
$1,000
1/22/2022

Security: UAP on creating WebAssembly memories on document reload

#40057594Reporter: em...@gmail.com
$7,500
1/20/2022

Security: Extension messages can indefinitely extend user activation expiry and repeatedly use of it

#40094769Reporter: de...@gmail.com
$3,000
1/13/2022

Security: v8 CHECK Failed IsStruct_NonInline in Torgue Struct-Tq-Inl

#40056819Reporter: re...@yahoo.de
$5,000
1/12/2022

Security: Use After Free in DevToolsFileHelper::GetFileSystems

#40057268Reporter: ha...@gmail.com
$10,000
1/12/2022

tint_regex_spv_writer_fuzzer: Crash in LLVMFuzzerCustomMutator

#40057310Reporter: cl...@chromium.org
$0
1/12/2022

tdengine:sql-fuzzer: Heap-buffer-overflow in stringProcess

#42507238Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
1/11/2022

AddressSanitizer: heap-buffer-overflow mojo::internal::Serializer::Serialize

#40056774Reporter: m....@gmail.com
$7,500
1/10/2022
Showing 5971-5980 of 10930 bugs