Google Security Research
1,215 exploits
Active since May 2013
Apple Watchos < 2.0 - Improper Input Validation
Apple iOS <8.1.3, OS X <10.10.2, TV <7.0.3 - RCE
Apple OS X <10.11.5 - RCE
CVSS 7.8
Apple Mac OS X < 10.11.1 - Memory Corruption
WebKit - 'ContainerNode::parserRemoveChild' Universal Cross-Site Scripting
Apple Safari < 10.0.3 - Improper Input Validation
CVSS 6.5
Apple <10.2.1 - XSS
CVSS 6.5
Apple Safari < 10.0.3 - XSS
CVSS 6.1
Apple Safari < 10.1.1 - XSS
CVSS 6.1
Apple Safari < 10.1 - Improper Input Validation
CVSS 6.5
Apple WebKit / Safari 10.0.2(12602.3.12.0.1) - 'operationSpreadGeneric' Universal Cross-Site Scripting
Google Chrome <65.0.3325.146 - Heap Corruption
CVSS 8.8
Google Chrome 72.0.3626.121 / 74.0.3725.0 - 'NewFixedDoubleArray' Integer Overflow
Apple Icloud < 6.1.1 - Information Disclosure
CVSS 6.5
Apple WebKit / Safari 10.0.2(12602.3.12.0.1) - 'PrototypeMap::createEmptyStructure' Universal Cross-Site Scripting
Apple <10.2.1, <10.0.3 - CSRF
CVSS 6.5
Apple <10.2.1, <10.0.3, <10.1.1 - SSRF
CVSS 6.5
Apple Safari < 10.0.3 - Memory Corruption
CVSS 8.8
Apple Safari 10.0.3(12602.4.8) / WebKit - 'HTMLObjectElement::updateWidget' Universal Cross-Site Scripting
Samba < 4.4.12 - Race Condition
CVSS 7.5
Transmission <2.92 - RCE
CVSS 8.8
μTorrent (uTorrent) Classic/Web - JSON-RPC Remote Code Execution / Information Disclosure
Apple <10.3 - SSRF
CVSS 6.5
Google Chrome 72.0.3626.96 / 74.0.3702.0 - 'JSPromise::TriggerPromiseReactions' Type Confusion
Rar - CmdExtract::UnstoreFile Integer Truncation Memory Corruption