Disclosed Chromium Security Bugs
←Back to DashboardTurbolev: incorrent opcode effect modeling can lead to arbitrary code execution
$55,000
8/1/2026
Turboshaft: stale `PhiOp` replacement for Wasm arrays causes `array.len` bounds bypass and out-of-bounds array read/write
$55,000
7/31/2026
Arbitrary Memory Read and Write in ANGLE GL Backend via PBO Desync
$97,000
7/29/2026
Type confusion in BuildCheckSmi constant folding in V8/Maglev
$55,000
7/22/2026
OOB write in PDFium TIFF decoder via lossless JPEG data precision mismatch
$50,000
7/15/2026
Maglev: unsound node replacement when inlining can lead to exploitable write barrier omission
$55,000
7/10/2026
ANGLE BlitGL copySubTextureCPUReadback Controlled Heap Overflow via Unsynchronized PACK_ROW_LENGTH
$90,000
7/7/2026
ANGLE Metal Stale mFormat Cache causes GPU OOB WRITE
$77,000
7/1/2026
Use-After-Free in Dawn Wire Server Uncaptured-Error Callback via Incomplete Device Unregistration Cleanup
$70,000
6/27/2026
Heap buffer overflow in BufferMtl shadow copy sync during bufferData leads to GPU process memory corruption in macOS
$77,000
6/24/2026