Chromium Security Bugs
←Back to DashboardDCHECK failure in IsJSFunction(*callable) implies !Cast(*callable)->shared()->is_scrip
$0
6/25/2025
intent:// can bypass fido:/ URI bock (see: 370482421)
$2,000
6/25/2025
The maglev-pretenure-store-values feature leads to bypass of write barrier check
$10,000
6/25/2025
DCHECK failure in ((static_cast(tagged_value) & ::i::kSmiTagMask) == ::i::kSmiTag) in
$0
6/24/2025
UAF in net::HttpStreamPool::Group::ProcessPendingRequest
$10,000
6/22/2025
Type Confusion Vulnerability in Maglev When Handling TypedArray Length Loading
$6,000
6/21/2025
Heap-use-after-free in chromium_jpeg_read_scanlines
$9,000
6/20/2025
Update libxslt to v1.1.43
$0
6/20/2025
Heap-use-after-free in blink::ImageDecodingStore::InsertDecoder
$0
6/20/2025
Stack-use-after-scope in blink::Shape::CreateLayoutBoxShape
$0
6/20/2025