Disclosed Chromium Security Bugs

Use-after-poison in blink::Node::EnsureEventTargetData

#40095978•Reporter: cl...@chromium.org
$3,000
1/15/2020

Heap-use-after-free in AvatarMenu::~AvatarMenu

#40050259•Reporter: cl...@chromium.org
$0
1/15/2020

CHECK failure: Object is not known to the heap broker in js-heap-broker.cc

#40050112•Reporter: cl...@chromium.org
$0
12/23/2019

Security: forced redirection from cross-origin iframe

#40095928•Reporter: el...@confiant.com
$3,000
12/18/2019

CHECK failure: U_SUCCESS(status) in intl-objects.cc

#40096078•Reporter: cl...@chromium.org
$0
12/17/2019

Security: Filesystem dialog box to cover the self-window and no origin for spoof

#40086911•Reporter: xi...@gmail.com
$1,000
12/11/2019

Security: UaF in ImageCapture

#40096129•Reporter: mm...@semmle.com
$20,000
12/11/2019

Security: OOB Access in V8

#40096142•Reporter: hi...@gmail.com
$10,000
12/6/2019

Security: Use after free in MojoCdmService

#40096143•Reporter: hi...@gmail.com
$30,000
12/6/2019

Security: UaF in MediaSession, Android only

#40096072•Reporter: mm...@semmle.com
$20,000
11/30/2019
Showing 8751-8760 of 13102 bugs