Disclosed Chromium Security Bugs

Security: Autofill prompt for a page can render over different origin, allows spoofing of autofill context origin

#40056880•Reporter: al...@alesandroortiz.com
$5,000
3/3/2022

Security: Heap-use-after-free in ui::EventDispatcher::DispatchEventToEventHandlers()

#40057864•Reporter: ch...@gmail.com
$1,000
3/3/2022

Null-dereference READ in rx::vk::QueryHelper::writeTimestamp

#40058005•Reporter: cl...@chromium.org
$0
3/3/2022

webcodecs_image_decoder_fuzzer: Crash in mv_projection

#40057975•Reporter: cl...@chromium.org
$0
3/2/2022

Bad-cast to content::ServiceVideoCaptureProvider::ServiceProcessObserver from invalid vptr in base::internal::UnretainedWrapper

#40057976•Reporter: cl...@chromium.org
$0
3/1/2022

Security: Possible for extension to escape sandbox via Input.synthesizeTapGesture

#40053103•Reporter: de...@gmail.com
$10,000
2/27/2022

Access violation with --turbo_inline_js_wasm_calls

#40057950•Reporter: pa...@microsoft.com
$0
2/27/2022

pdf_formcalc_context_fuzzer: DCHECK failure in marking_support_ != MarkingType::kAtomic in heap.cc

#40057973•Reporter: cl...@chromium.org
$0
2/27/2022

CSP form-action checks full URL on redirects

#40085849•Reporter: es...@chromium.org
$0
2/24/2022

Security: Chrome for ios crash when selecting long message with special characters

#40050778•Reporter: wh...@gmail.com
$0
2/24/2022
Showing 8081-8090 of 13102 bugs