Disclosed Chromium Security Bugs

CHECK failure: SpeculativeSmallIntegerAdd of kMachNone (Range(2, 2)) cannot be changed to kRepW

#419622700Reporter: 24...@project.gserviceaccount.com
$0
8/30/2025

ffmpeg:ffmpeg_AV_CODEC_ID_TIFF_DEC_fuzzer: Heap-buffer-overflow in av_bprintf

#441131173Reporter: 87...@developer.gserviceaccount.com
$0
8/29/2025

vulkan-loader:instance_enumerate_fuzzer: Null-dereference READ in ubsan_GetStackTrace

#429645369Reporter: 87...@developer.gserviceaccount.com
$0
8/29/2025

liblouis:fuzz_translate_generic: Crash in _lou_handlePassVariableAction

#438413376Reporter: 87...@developer.gserviceaccount.com
$0
8/29/2025

kmime:kmime_fuzzer: Use-of-uninitialized-value in KMime::HeaderParsing::parseDateTime

#441263171Reporter: 87...@developer.gserviceaccount.com
$0
8/29/2025

Use After Free in CompressedPointer::Load inside WorkerThread::DidProcessTask

#409059706Reporter: wa...@gmail.com
$1,000
8/29/2025

Security: Fatal error in src/compiler/turboshaft/operations.cc, line 152

#411802156Reporter: da...@gmail.com
$7,000
8/29/2025

backmerge roll of libvpx with security fix for uaf

#419467315Reporter: am...@chromium.org
$0
8/29/2025

CHECK failure: ref.IsSmi() || ref.IsHeapNumber() || ref.AsHeapObject().GetHeapObjectType(broker

#419099999Reporter: 24...@project.gserviceaccount.com
$0
8/29/2025

Copy as Curl (CMD) Leads to code execution on windows

#406631048Reporter: am...@gmail.com
$1,000
8/28/2025
Showing 791-800 of 9394 bugs