Disclosed Chromium Security Bugs

webnn_graph_impl_fuzzer_WebNNGraphImplFuzzer_CPU_SingleOpPool2d_fuzzer: Incorrect-function-pointer-type in xnn_compute_max_pooling

#509910783Reporter: 24...@project.gserviceaccount.com
$0
8/19/2026

cbor-java:FuzzDec: Security exception in co.nstant.in.cbor.CborDecoder.decodeNext

#545676301Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

janet:fuzz_dobytes: Heap-buffer-overflow in make_struct_n

#531106754Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

mruby:mruby_proto_fuzzer: Heap-buffer-overflow in find_symbol

#547982150Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

harfbuzz:hb-subset-fuzzer: Use-of-uninitialized-value in iup_delta_optimize

#526770452Reporter: 87...@developer.gserviceaccount.com
$0
8/18/2026

Potential Attestation Bypass via Hardcoded crossOrigin in iOS WebAuthn

#505254396Reporter: li...@chromium.org
$0
8/18/2026

Potential Use-After-Free in SimulcastEncoderAdapter during encoder reconfiguration

#504620824Reporter: vm...@google.com
$0
8/18/2026

Potential UAF in WebRTC RtpStreamsSynchronizer due to stale sync group pointer

#504599749Reporter: vm...@google.com
$0
8/18/2026

Site Isolation Bypass via Unvalidated FrameSinkId in Async Hit-Testing

#511742228Reporter: vm...@google.com
$0
8/18/2026

Missing IsInPrimaryMainFrame check in NetErrorTabHelper leads to SameSite=Strict bypass

#511814550Reporter: vm...@google.com
$0
8/18/2026
Showing 71-80 of 12354 bugs
1...789...1236