Blog
Welcome to Tashita’s vulnerability research blog. Here our team publishes in-depth technical analysis of real-world vulnerabilities: browser exploitation, JavaScript engine internals (V8, WebKit, JavaScriptCore), fuzzing techniques, and full exploit walkthroughs from our CVE discoveries. Every post comes from the same research workflow that powers SeekZero, our browser vulnerability research framework.
Bug 277860
Bug Details Apple WebKit August 9, 2024 – Heap Use After Free in WebCore in Apple WebKit prior to version Safari 17.5 Credit: Tashita Software Security Researcher: Javier WebKit Issue 277860 Bug Details [...]
Bug 376381583
Bug Details Google Chrome October 30, 2024 – Integer overflow in V8 in Google Chrome prior to version 84.0.4147.89. Credit: Tashita Software Security Researcher: Javier Chromium Issue 376381583 Bug Details Bug Integer[...]
Bug 375343420
Bug Details Google Chrome October 24, 2024 – Inappropriate implementation in V8 in Google Chrome prior to 130.0.6723.58 Credit: Tashita Software Security Researcher: Javier Chromium Issue 375343420 Bug Details Bug DCHECK on[...]
Bug 372750822
Bug Details Google Chrome October 15, 2024 – Inappropriate DCHECK in V8 in Google Chrome prior to 91.0.4472.106 Credit: Tashita Software Security Researcher: Javier Chromium Issue 372750822 Bug Details Bug DCHECK on[...]
Bug 370694832
Bug Details Google Chrome October 1, 2024 – Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.36 Credit: Tashita Software Security Researcher: Javier Chromium Issue 370694832 Bug Details Bug DCHECK on[...]
CVE-2024-54534
CVE Details Apple WebKit The issue was addressed with improved memory handling. This issue is fixed in watchOS 11.2, visionOS 2.2, tvOS 18.2, macOS Sequoia 15.2, Safari 18.2, iOS 18.2 and iPadOS 18.2. Processing maliciously crafted web[...]

