Disclosed Chromium Security Bugs

Potential Sandbox Escape via Insecure Deserialization of App Group Data

#505144022Reporter: li...@chromium.org
$0
8/13/2026

Potential Auth Bypass in iOS Password Manager due to fail-open transition handling

#508274913Reporter: li...@chromium.org
$0
8/13/2026

The contact dialog box may appear on top of the cross-origin page, which could confuse users

#502328201Reporter: mo...@gmail.com
$0
8/13/2026

Heap buffer over-read in Mesa RadeonSI noop-blend analysis for scalar fragment outputs leads to GPU process memory disclosure

#498828605Reporter: je...@gmail.com
$2,000
8/13/2026

apply_stch uint32 accumulation OOB write (Chromium renderer SEGV)

#503425922Reporter: ma...@gmail.com
$10,000
8/13/2026

Potential GPU Process OOB Access in Intel VAAPI H.264 Decryption due to Metadata Desync

#506378112Reporter: vm...@google.com
$0
8/13/2026

GPU memory leak via uninitialized shader outputs in non-WebGL hardened contexts

#503471286Reporter: vm...@google.com
$0
8/13/2026

Potential Arbitrary Local File Exfiltration via Web Share API on macOS

#498977444Reporter: vm...@google.com
$0
8/13/2026

AreRequestHeadersSafe() missing Origin and Sec-* prefix blocking — compromised renderer forges Origin and Sec-Fetch-* headers via modified_headers in FollowRedirect

#494800494Reporter: os...@gmail.com
$1,000
8/13/2026

GPU memory leak via uninitialized locals in hardened ANGLE contexts

#503438092Reporter: vm...@google.com
$0
8/13/2026
Showing 911-920 of 13102 bugs