Vulnerabilities in Google
7,001 resultsCVE-2026-106313MEDIUMIncorrect authorization in Browser in Google Chrome on on Android prior to 155.0.8059.39 allowed a local attacker leveraging social engineerEPSS 0.1%CVE-2023-21354—In Package Manager Service, there is a possible way to determine whether an app is installed, without query permissions, due to side channelEPSS 0.1%CVE-2023-21303—In Content, here is a possible way to determine whether an app is installed, without query permissions, due to side channel information discEPSS 0.1%CVE-2023-21313—In Core, there is a possible way to forward calls without user knowledge due to a missing permission check. This could lead to local escalatEPSS 0.1%CVE-2018-9370HIGHIn download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions due to missing bounEPSS 0.1%CVE-2025-26436HIGHIn clearAllowBgActivityStarts of PendingIntentRecord.java, there is a possible way for an application to launch an activity from the backgroEPSS 0.1%CVE-2023-21359—In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the BEPSS 0.1%CVE-2024-27211HIGHIn AtiHandleAPOMsgType of ati_Main.c, there is a possible OOB write due to a missing null check. This could lead to local escalation of privEPSS 0.1%CVE-2023-40085LOWIn convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to locEPSS 0.1%CVE-2023-21305—In Content, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disEPSS 0.1%CVE-2026-0118HIGHIn oobconfig, there is a possible bypass of carrier restrictions due to a logic error. This could lead to local escalation of privilege withEPSS 0.1%CVE-2026-28663HIGHIn buildIntentSenderForUser of LauncherAppsService.java, there is a possible way to launch an activity from the background due to BAL BypassEPSS 0.1%CVE-2024-34733HIGHIn DevmemXIntMapPages of devicemem_server.c, there is a possible arbitrary code execution due to an integer overflow. This could lead to locEPSS 0.1%CVE-2018-9477HIGHIn the development options section of the Settings app, there is a possible authentication bypass due to a missing permission check. This coEPSS 0.1%CVE-2026-49887HIGHIn maybeRemoveInvalidInstallerPackageName of InstallRepository.kt, there is a possible unauthorized app update due to a permissions bypass. EPSS 0.1%CVE-2026-28636HIGHIn setupLayout of PickActivity.java, there is a possible bypass of the "Install unknown apps" security restriction due to a confused deputy.EPSS 0.1%CVE-2026-28631HIGHIn buildMiniResolver of IntentForwarderActivity.java, there is a possible consent bypass due to a tapjacking/overlay attack. This could leadEPSS 0.1%CVE-2018-9474HIGHIn writeToParcel of MediaPlayer.java, there is a possible serialization/deserialization mismatch due to improper input validation. This coulEPSS 0.1%CVE-2025-48556HIGHIn multiple methods of NotificationChannel.java, there is a possible desynchronization from persistence due to improper input validation. ThEPSS 0.1%CVE-2026-28611HIGHIn multiple functions of NfcService.java, there is a possible silent payment session hijacking enablement due to a missing permission check.EPSS 0.1%