Disclosed Chromium Security Bugs
←Back to DashboardPotential Cross-thread Use-After-Free in GnomeDisplayConfigDBusClient
$0
8/28/2026
Potential local file read via scheme-less URI bypass in SelectFileDialog.java
$0
8/28/2026
Concurrent V8 Isolate Access in OfflineAudioDestinationHandler
$0
8/28/2026
TOCTOU in HLS BYTERANGE check enables cross-origin data oracle
$0
8/28/2026
Potential Browser-process Heap UAF in HelpBubbleEventRelay::OnEvent
$0
8/28/2026
Incorrect fix for CVE-2026-7905
$0
8/28/2026
Potential Race Condition and UAF in MidiManagerAndroid leading to JNI Type Confusion
$0
8/28/2026
Potential macOS Sandbox Escape via TOCTOU in GpuHost::CreateWebNNWeightsFile
$0
8/28/2026
32-bit signed overflow in IndexedBufferBindingHost allows OOB GPU access
$0
8/28/2026
V8 Sandbox Bypass: Turboshaft: three exhaustive switches over sandbox-corruptible enums missing UNREACHABLE() - incomplete fix for aee2fe73cc9 (sandbox UB audit)
$500
8/28/2026