Disclosed Chromium Security Bugs

v8_regexp_parser_fuzzer: DCHECK failure in index <= known_captures in regexp-parser.cc

#40061332•Reporter: cl...@chromium.org
$0
1/19/2023

chrome.debugger API bypasses the runtime_blocked_hosts cookie protection

#40060283•Reporter: nd...@protonmail.com
$3,000
1/18/2023

Security: .url files can be saved via getFileHandle and redirect showSaveFilePicker to arbitrary file

#40060617•Reporter: ha...@gmail.com
$1,000
1/18/2023

CrOS: Vulnerability reported in media-libs/tiff

#40061070•Reporter: vo...@appspot.gserviceaccount.com
$0
1/18/2023

Security: file_type_policies changes reintroduce attack surface

#40061253•Reporter: er...@microsoft.com
$0
1/18/2023

CHECK failure: !v8::internal::FLAG_enable_slow_asserts || (IsJSReceiver_NonInline(*this)) in js

#40061268•Reporter: cl...@chromium.org
$0
1/18/2023

Use-after-poison in blink::NGBlockNode::StoreResultInLayoutBox

#40061272•Reporter: cl...@chromium.org
$0
1/18/2023

use after poison in HeapObjectHeader::LoadEncoded()

#40061280•Reporter: em...@gmail.com
$10,000
1/18/2023

DCHECK failure in gc_epilogue_callbacks_.IsEmpty() in local-heap.cc

#40061316•Reporter: cl...@chromium.org
$0
1/18/2023

CHECK failure: diff <= 0.5

#40061317•Reporter: cl...@chromium.org
$0
1/18/2023
Showing 7321-7330 of 13102 bugs