Google Security Research
1,215 exploits
Active since May 2013
Microsoft Windows - Denial of Service via Crafted OpenType Font
CVSS 6.5
Windows GDI+ Kernel Memory Address Disclosure in Windows 7 SP1, 8.1, Server 2008 SP2/R2 SP1, Server 2012/2012 R2, RT 8.1
CVSS 5.5
Windows Kernel - Information Disclosure via Crafted Document
CVSS 4.7
Microsoft Windows <10.0 - Privilege Escalation
CVSS 6.7
Windows 7 SP1, Server 2008 SP2/R2 SP1, 2012 Gold - Kernel Info Disclosure
CVSS 4.7
Windows 10 and Windows Server 2016 - Elevation of Privilege via Desktop Bridge Virtual Registry
CVSS 7.0
Windows Runtime - Privilege Escalation
CVSS 7.8
Windows Desktop Bridge - Privilege Escalation
CVSS 7.0
Windows 7 SP1, Server 2008 SP2/R2 SP1, 2012 Gold - Authenticated Info Disclosure via Crafted Document
CVSS 4.7
Microsoft Windows Vista SP2/Server 2008 SP2/R2 SP1/7 SP1 Uniscribe Information Disclosure
CVSS 4.3
Microsoft Windows Vista SP2, Server 2008 SP2/R2 SP1, Windows 7 SP1 Uniscribe Information Disclosure
CVSS 4.3
Microsoft Windows GDI+ - Information Disclosure via Crafted Website
CVSS 4.7
Windows Uniscribe - Remote Code Execution via Crafted Website
CVSS 8.8
Microsoft Windows Vista SP2, Server 2008 SP2/R2 SP1, and 7 SP1 - Remote Code Execution via Uniscribe
CVSS 8.8
.NET Framework - Remote Code Execution via Crafted OpenType Font
Internet Explorer - Remote Code Execution via VBScript Engine Memory Handling
CVSS 7.5
Windows Kernel - Authenticated Information Disclosure via Specially Crafted Application
CVSS 5.0
Windows Adobe Type Manager Library - Remote Code Execution via Crafted OpenType Font
.NET Framework - Remote Code Execution via Crafted OpenType Font
Microsoft Windows - 'win32k!ClientPrinterThunk' Kernel Stack Memory Disclosure
Windows Kernel - Authenticated Information Disclosure via Specially Crafted Application
CVSS 5.0
Microsoft Windows - Authenticated Information Disclosure via Win32k Memory Initialization
CVSS 5.0
Microsoft Windows 7 SP1, Server 2008 SP2/R2 SP1, Server 2012 - Win32k Memory Initialization Info Disclosure
CVSS 5.0
Microsoft .NET Framework - Remote Code Execution via TrueType Font Parsing
Microsoft Windows Uniscribe - Remote Code Execution via Crafted Website
CVSS 8.8