Google Security Research
1,215 exploits
Active since May 2013
Microsoft Edge - Remote Code Execution via Chakra JavaScript Engine Type Confusion
CVSS 8.8
Microsoft Edge - Remote Code Execution via Chakra JavaScript Engine Memory Corruption
CVSS 7.5
Microsoft DirectWrite / AFDKO - NULL Pointer Dereferences in OpenType Font Handling While Accessing Empty dynarrays
Microsoft Edge - 'UnmapViewOfFile' ACG Bypass
Microsoft Edge - Security Feature Bypass via Click2Play Flash Handling
CVSS 5.3
Microsoft Edge and Internet Explorer 11 - Remote Code Execution via Scripting Engine Memory Corruption
CVSS 7.5
Windows 10 and Windows Server 2016/2019 - Remote Code Execution in DirectWrite
CVSS 8.8
Windows 10 and Windows Server 2016/2019 - Remote Code Execution in DirectWrite
CVSS 8.8
Microsoft Edge - Remote Code Execution via TypedArray.sort Use-After-Free
CVSS 7.5
Microsoft Edge and Internet Explorer 10-11 - Remote Code Execution via CSS Token Sequence Type Confusion
CVSS 8.1
Microsoft DirectWrite / AFDKO - Out-of-Bounds Read in OpenType Font Handling Due to Undefined FontName Index
Microsoft Edge - Remote Code Execution via Memory Corruption
CVSS 7.5
Microsoft Edge - Remote Code Execution via JavaScript Engine Memory Corruption
CVSS 7.5
ChakraCore < 1.7.6 - Out-of-bounds Read in Scripting Engine
CVSS 5.3
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
CVSS 7.5
ChakraCore - Remote Code Execution via Memory Corruption
CVSS 7.5
ChakraCore & Microsoft Edge - Memory Corruption
CVSS 7.5
ChakraCore - Remote Code Execution via Memory Corruption
CVSS 7.5
Windows 10 and Windows Server 2019 - Remote Code Execution in DirectWrite
CVSS 8.8
Microsoft Edge - Remote Code Execution via Memory Corruption in JavaScript Engine
CVSS 7.5
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
CVSS 7.5
ChakraCore and Microsoft Edge - Privilege Escalation
CVSS 7.5
Windows 10 and Windows Server 2016/2019 - Remote Code Execution in DirectWrite
CVSS 8.8
Microsoft Edge - Remote Code Execution via Chakra JavaScript Engine Memory Corruption
CVSS 7.5
Windows Vista SP2, Windows Server 2008 SP2/R2, Windows 7 SP1 - ASLR Bypass via ICM32.dll Memory Handling
CVSS 5.3