Disclosed Chromium Security Bugs

UAF in JsCommunication, leading to RCE

#481920229Reporter: po...@gmail.com
$7,000
5/22/2026

UAF in content::RenderFrameImpl::CommitSameDocumentNavigation(with puppeteer)

#333024273Reporter: em...@gmail.com
$0
5/22/2026

Local web pages can open a WebSocket to ChromeDriver and issue WebDriver BiDi commands, exposing the browser automation control surface to arbitrary web content

#478783560Reporter: po...@gmail.com
$0
5/22/2026

Spoof on virtual keyboard

#482433856Reporter: sa...@gmail.com
$2,000
5/22/2026

DCHECK failure in native_module_cache_.empty() in wasm-engine.cc

#374812610Reporter: 24...@project.gserviceaccount.com
$0
5/22/2026

openbabel:fuzz_empty_write: Bad-cast to OBSetData from OpenBabel::OBPairData in OpenBabel::GhemicalFormat::WriteMolecule

#514835220Reporter: 87...@developer.gserviceaccount.com
$0
5/21/2026

freeradius:fuzzer_xlat: Crash in xlat_tokenize_input

#514911403Reporter: 87...@developer.gserviceaccount.com
$0
5/21/2026

freeradius:fuzzer_json: Heap-buffer-overflow in fr_utf8_char

#513902209Reporter: 87...@developer.gserviceaccount.com
$0
5/21/2026

util-linux:test_blkid_fuzz: Stack-buffer-underflow in probe_dasd_pt

#514896889Reporter: 87...@developer.gserviceaccount.com
$0
5/21/2026

freeradius:fuzzer_xlat: Global-buffer-overflow in tokenize_field

#514896888Reporter: 87...@developer.gserviceaccount.com
$0
5/21/2026
Showing 81-90 of 10546 bugs
1...8910...1055