Google Security Research
1,215 exploits
Active since May 2013
Firefox < 66.0.1 - Memory Corruption
CVSS 8.8
Skia Graphics Library - Heap Overflow due to Rounding Error in SkEdge::setLine
Skia - Buffer Overflow
CVSS 9.8
Skia - Incorrect Convexity Assumptions Leading to Buffer Overflows
Google Chrome <67.0.3396.62 - Memory Corruption
CVSS 8.8
Rar - CmdExtract::UnstoreFile Integer Truncation Memory Corruption
Linux kernel <2.6.33 & QEMU <2.3.1 - Use After Free
pdfium IsFlagSet (v8 memory management) - SIGSEGV
Pdfium - Pattern Shading Integer Overflows
Pdfium - Out-of-Bounds Read with Shading Pattern Backed by Pattern Colorspace
pdfium - opj_t2_read_packet_header 'libopenjpeg' Heap Use-After-Free
pdfium - opj_jp2_apply_pclr 'libopenjpeg' Heap Out-of-Bounds Read
pdfium - opj_j2k_read_mcc 'libopenjpeg' Heap Out-of-Bounds Read
Google Chrome < 46.0.2490.86 - Denial of Service
Google Chrome < 46.0.2490.86 - Denial of Service
Google Chrome < 46.0.2490.86 - Denial of Service
Oracle VM VirtualBox <5.0.38-5.1.20 - RCE
CVSS 8.8
Oracle VM VirtualBox <5.0.38-5.1.20 - Privilege Escalation
CVSS 7.9
Oracle VM VirtualBox <5.0.38 & <5.1.20 - RCE
CVSS 8.4
Oracle JDK 7u211 and 8u202 - Unauthenticated Remote Code Execution via Multiple Protocols
CVSS 8.1
Oracle JDK 7u211 and 8u202 - Unauthenticated Remote Code Execution via 2D Subcomponent
CVSS 8.1
Adobe Flash Player < 13.0.0.289 and 14.x-18.x < 18.0.0.203 - Same Origin Policy Bypass
CUPS < 2.0.3 - Remote Code Execution via IPP Job Request
Adobe Flash Player <18.0.0.333 & 19.x-21.x - Use After Free
CVSS 8.8
iPhone OS < 12.1.1, macOS < 10.14.2, tvOS < 12.1.1, watchOS < 5.1.2 - Logic Issue
CVSS 7.8