Home

Awesome

Case Study of Browser DOM Vulnerabilities

Inspired by js-vuln-db

Chrome

CVE Number / IDModuleLabelCredit
CVE-2018-6073WebGLHeap Overflowom...@krash.in
CVE-2018-16082sw::SurfaceStack Overflowom...@krash.in
CR-666246HTMLSelectElementUAFifratric

Firefox

CVE NumberModuleLabelCredit
CVE-2016-9079nsSMILTimeContainerUAFDaniel Veditz
CVE-2017-5447gfxTextRunOOB Readifratric
CVE-2017-5465ConvolvePixelMemory Disclosureifratric

Edge

CVE NumberModuleLabelCredit
CVE-2016-0003CDOMTextNodeType Confusionunknown
CVE-2017-0037CssParserType Confusionifratric
CVE-2017-8496CssParserType Confusionifratric
CVE-2018-1021CFormElementOOB Readakayn

Webkit

CVE NumberModuleLabelCredit
CVE-2018-4197RenderTreeBuilderUAFifratric
CVE-2018-4306NodeUAFifratric
CVE-2018-4312AXObjectCacheUAFifratric
CVE-2018-4315SVGTRefElementUAF, SVGifratric
CVE-2018-4317RenderLayerUAFifratric
CVE-2018-4318SVGTextLayoutAttributesUAF, SVGifratric
CVE-2018-4323RenderMultiColumnSetUAFifratric
CVE-2018-4328InlineTextBoxOOB Readifratric

IE

CVE NumberModuleLabelCredit
CVE-2012-4792CButtonUAFunknown
CVE-2015-6152CObjectElementUAFunknown
CVE-2018-8460CStyleAttrArrayDouble FreeSimon Zuckerbraun