Disclosed Chromium Security Bugs

Security: Google Chrome Extensions Web Accessible Resources Bypass

#40083512Reporter: l3...@gmail.com
$500
10/1/2016

Heap-buffer-overflow in SkPaint::unflatten

#40083514Reporter: cl...@chromium.org
$0
10/1/2016

Crash in SkRBufferWithSizeCheck::read

#40083516Reporter: cl...@chromium.org
$0
10/1/2016

Stack-use-after-return in v8::internal::HandleBase::IsDereferenceAllowed

#40084668Reporter: de...@googlemail.com
$3,500
10/1/2016

Use-after-poison in blink::CrossThreadPersistentRegion::prepareForThreadStateTermination

#40084593Reporter: cl...@chromium.org
$0
9/29/2016

Security: HTTP 302 can navigate to non-web-accessible chrome-extension:// URIs

#40083753Reporter: ql...@gmail.com
$0
9/23/2016

Use-after-poison in blink::CrossThreadPersistentRegion::prepareForThreadStateTermination

#40084544Reporter: cl...@chromium.org
$0
9/20/2016

Security: Heap-use-after-free in autofill components

#40084206Reporter: ro...@robwu.nl
$1,000
8/31/2016

Heap-use-after-free in blink::LayoutObject::containingBlock

#40084223Reporter: at...@gmail.com
$3,500
8/31/2016

Security: Devtools allows running privileged scripts via XSS on chrome-devtools-frontend.appspot.com

#40084203Reporter: gr...@gmail.com
$3,500
8/23/2016
Showing 7021-7030 of 10939 bugs