Disclosed Chromium Security Bugs

Security: Debug check failed: type.representation() == MachineRepresentation::kFloat64 || type.representation() == MachineRepresentation::kTagged.

#40059026•Reporter: p4...@gmail.com
$8,500
6/24/2022

Security: UAF in ViewsAXTreeManager

#40058092•Reporter: le...@gmail.com
$20,000
6/23/2022

Security: [ANGLE] Heap overflow read in vk::IndexBuffer::getIndexBuffers

#40058837•Reporter: gg...@gmail.com
$7,000
6/23/2022

gpu_raster_fuzzer: Use-of-uninitialized-value in cc::ServiceImageTransferCacheEntry::Deserialize

#40058941•Reporter: cl...@chromium.org
$0
6/23/2022

AddressSanitizer: use-after-poison in blink::WebrtcVideoPerfReporter::InitializeOnTaskRunner webrtc_video_perf_reporter.cc:36

#40059077•Reporter: m....@gmail.com
$6,000
6/23/2022

Security: TrustedTypes does not block assignment when modifying existing attribute value via nodeValue/textContent

#40058798•Reporter: ma...@gmail.com
$1,000
6/22/2022

Security: Potential Use After Free in ManagedValueStoreCache::OnPolicyUpdated

#40059024•Reporter: vi...@gmail.com
$1,000
6/22/2022

Security: Form validation UI dialog can cover whole page

#40057645•Reporter: st...@gmail.com
$1,000
6/21/2022

rdkit:smiles_string_to_mol_fuzzer: Object-size in SmilesParseOps::parser::finalizePolymerSGroup

#42512380•Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
6/21/2022

Security: heap-use-after-free in network::server::HttpServer::FindConnection

#40058085•Reporter: ha...@gmail.com
$1,000
6/18/2022
Showing 7851-7860 of 13102 bugs