Google Security Research
1,215 exploits
Active since May 2013
macOS < 10.11.5 - Remote Code Execution or Denial of Service via Crafted App
CVSS 7.8
macOS < 10.11.4 - Memory Corruption in Intel Graphics Driver
CVSS 7.8
Apple OS X < 10.11.5 - Remote Code Execution or Denial of Service via AppleGraphicsDeviceControlClient
CVSS 7.8
watchOS < 2.1 - Local Privilege Escalation via Crafted Mach Message
watchOS < 2.1 - Local Privilege Escalation via Crafted Mach Message
macOS < 10.11.2 - Use-After-Free in Hypervisor via VM Objects
Apple OS X < 10.11.4 - Memory Corruption in IOUSBFamily
CVSS 7.8
macOS < 10.11.5 - Remote Code Execution in NVIDIA Graphics Drivers
CVSS 7.8
watchOS < 2.1 - Local Privilege Escalation via Crafted Mach Message
Apple iOS <9.3 - Privilege Escalation
CVSS 7.8
Apple iOS <9.1, macOS <10.11.1, watchOS <2.0.1 - Remote Code Execution via IOAcceleratorFamily Memory Corruption
Apple iOS <9.2, macOS <10.11.2, tvOS <9.1, watchOS <2.1 - Memory Corruption in Kernel
IOKit <9.2.1-10.11.3-9.1.1 - Privilege Escalation/DoS
CVSS 7.8
Apple iOS <9.3.2, OS X <10.11.5, tvOS <9.2.1, watchOS <2.2.1 - RCE/DoS
CVSS 7.8
watchOS < 2.1 - Local Privilege Escalation via Crafted Mach Message
Apple iOS <9.2, macOS <10.11.2, tvOS <9.1, watchOS <2.1 - Denial of Service via IOKit SCSI Userclient Type
CVSS 7.8
Apple Mac OSX 10.10 - IOKit IntelAccelerator Null Pointer Dereference
Apple iOS < 9.1 and OS X < 10.11.1 - Remote Code Execution via Disk Images Component
Apple <10.3.3, <10.1.2, <6.2.2, <12.6.2 - RCE/DoS
CVSS 8.8
macOS < 10.11.2 - Privilege Escalation or Denial of Service via Intel Graphics Driver Memory Access
Safari < 10.1.1 and iPhone OS < 10.3.2 - Universal Cross-Site Scripting via Cached Frames
CVSS 6.1
Safari < 10.1.1 - Universal Cross-Site Scripting via Pageshow Event Handling
CVSS 6.1
iPhone OS < 10.3.1, Safari < 10.1, tvOS < 10.2 - Remote Code Execution via WebKit Memory Corruption
CVSS 8.8
macOS < 10.11.2 - Memory Corruption in Intel Graphics Driver
WebKit - 'Document::prepareForDestruction' / 'CachedFrame' Universal Cross-Site Scripting