Disclosed Chromium Security Bugs

Bad-cast to content::RenderWidgetHostViewChildFrame from content::RenderWidgetHostViewBase in content::RenderWidgetHostInputEventRouter::OnRenderWidgetHostViewBaseDestroyed

#40058055•Reporter: cl...@chromium.org
$0
3/7/2022

Bad-cast to void *(unsigned long) in xmlAllocParserInputBuffer

#40058033•Reporter: cl...@chromium.org
$0
3/6/2022

CHECK failure: marking_state_->IsBlackOrGrey(heap_object)

#40057964•Reporter: cl...@chromium.org
$0
3/4/2022

Segv on unknown address in tint::writer::msl::Options::operator=

#40057991•Reporter: cl...@chromium.org
$0
3/4/2022

Security: heap-use-after-free in DevToolsWindow::ActivateWindow

#40058000•Reporter: ab...@microsoft.com
$0
3/4/2022

Security: heap-use-after-free in DevToolsWindow::Show

#40058001•Reporter: ab...@microsoft.com
$0
3/4/2022

Crash in blink::NGInlineItemsBuilderTemplate::AppendTex

#40058010•Reporter: cl...@chromium.org
$0
3/4/2022

CHECK failure: (location_) != nullptr in maybe-handles.h

#40058022•Reporter: cl...@chromium.org
$0
3/4/2022

The destruction timing issue between RenderFrameHostImpl and DedicatedWorkerHost/DedicatedWorkerHostFactoryImpl

#40054797•Reporter: m....@gmail.com
$0
3/3/2022

Security: Pointer lock can be used to bypass mouse movement/keyboard input requirements for autofill

#40056870•Reporter: al...@alesandroortiz.com
$3,000
3/3/2022
Showing 8071-8080 of 13102 bugs