Disclosed Chromium Security Bugs
←Back to DashboardHeap-use-after-free in v8::Isolate::VisitHandlesWithClassIds
$3,500
8/18/2016
Heap-use-after-free in blink::DeferredTaskHandler::handleDirtyAudioNodeOutputs
$3,500
8/17/2016
Security: Heap-use-after-free in AutofillAgent::FillFieldWithValue
$1,000
8/15/2016
Bad-cast to v8::internal::AstNode from invalid vptr;wasm-js.cc:138:7
$0
8/9/2016
Heap-use-after-free in blink::LayoutBoxModelObject::invalidateStickyConstraints
$3,500
7/12/2016
libANGLE buffer-overflow (part of pwn2own exploit)
$0
6/29/2016
Crash in v8::internal::InnerPointerToCodeCache::GcSafeFindCodeForInnerPointer
$3,500
6/24/2016
Internal object leak in ModuleSystem::RequireForJsInner => Universal XSS
$7,500
6/17/2016
Heap-use-after-free in blink::FrameView::performLayout
$3,500
6/9/2016
ASSERTION FAILED: value.isPrimitiveValue()
$0
6/7/2016