Google Security Research
1,215 exploits
Active since May 2013
Adobe Flash Player <= 25.0.0.171 - Memory Corruption in ATF Module
CVSS 9.8
Adobe Flash Player <=21.0.0.242 - Fourth Exploit-Referenced Impact Unknown
CVSS 9.8
Adobe Flash Player <=21.0.0.213 addProperty - Use-After-Free
CVSS 7.5
Adobe Flash Player < 11.2.202.491 and < 18.0.0.232 - Use-After-Free
Adobe Flash Player <18.0.0.252-19.0.0.207 & 11.2.202.535 - RCE
CVSS 7.8
iPhone OS < 12.4 and macOS < 10.14.6 - Memory Leak
CVSS 5.3
Mozilla Spidermonkey - Unboxed Objects Uninitialized Memory Access
Firefox < 60.7.1, < 67.0.3 and Thunderbird < 60.7.2 - Type Confusion via Array.pop
CVSS 8.8
Debian Linux < 45.9.0 - Use After Free
CVSS 9.1
Debian Linux < 45.9.0 - Out-of-Bounds Read
CVSS 9.1
Debian Linux < 45.8.0 - Use After Free
CVSS 9.8
Microsoft Windows - Remote Code Execution via GDI Crafted Document
CVSS 8.8
macOS/iOS ImageIO - Heap Corruption when Processing Malformed TIFF Image
macOS/iOS - JavaScript Injection Bug in OfficeImporter
iPhone OS < 12.1.3, macOS < 10.14.3, tvOS < 12.1.2 - Out-of-bounds Write
CVSS 7.8
iPhone OS < 12.1.3, macOS < 10.14.3, tvOS < 12.1.2, watchOS < 5.1.3 - Sandbox Escape via Type Confusion
CVSS 8.6
iPhone OS < 12.1.3 - Remote Code Execution via Buffer Overflow
CVSS 7.8
iPhone OS < 12.1.3, macOS < 10.14.3, tvOS < 12.1.2 - Out-of-bounds Write
CVSS 7.8
iPhone OS < 12.4 - Use-After-Free via Untrusted NSDictionary Deserialization
CVSS 9.8
iCloud < 7.13 - Memory Corruption via Malicious Web Content
CVSS 8.8
iCloud < 7.13 - Memory Corruption via Malicious Web Content
CVSS 8.8
iCloud < 7.15 - Memory Corruption via Malicious Web Content
CVSS 8.8
watchOS < 6.1 - Remote Code Execution via Malicious Web Content
CVSS 8.8
iPhone OS < 12.1.3, macOS < 10.14.3, tvOS < 12.1.2, watchOS < 5.1.3 - Out-of-bounds Read
CVSS 5.5
iPadOS < 13.3.1 - Out-of-bounds Write
CVSS 7.8