Vulnerabilities in Google
7,003 resultsCVE-2024-40654HIGHIn multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege withEPSS 0.1%CVE-2024-44092HIGHThere is a possible LCS signing enforcement missing due to test/debugging code left in a production build. This could lead to local escalatEPSS 0.1%CVE-2024-40650HIGHIn wifi_item_edit_content of styles.xml , there is a possible FRP bypass due to Missing check for FRP state. This could lead to local escalaEPSS 0.1%CVE-2024-27230MEDIUMIn ProtocolPsKeepAliveStatusAdapter::getCode() of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds checEPSS 0.1%CVE-2024-27210HIGHIn policy_check of fvp.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privEPSS 0.1%CVE-2024-53833HIGHIn prepare_response_locked of lwis_transaction.c, there is a possible out of bounds write due to improper input validation. This could leadEPSS 0.1%CVE-2025-48558HIGHIn multiple functions of BatteryService.java, there is a possible way to hijack implicit intent intended for system app due to Implicit inteEPSS 0.1%CVE-2024-40655HIGHIn bindAndGetCallIdentification of CallScreeningServiceHelper.java, there is a possible way to maintain a while-in-use permission in the bacEPSS 0.1%CVE-2025-48649HIGHIn multiple locations, there is a possible way to reset user-selected permissions selections due to a permissions bypass. This could lead toEPSS 0.1%CVE-2024-32922HIGHIn gpu_pm_power_on_top_nolock of pixel_gpu_power.c, there is a possible compromise of protected memory due to a logic error in the code. ThiEPSS 0.1%CVE-2026-106367HIGHMissing authorization in Mobile in Google Chrome on on Android prior to 155.0.8059.39 allowed a local attacker leveraging social engineeringEPSS 0.1%CVE-2025-26445MEDIUMIn offerNetwork of ConnectivityService.java, there is a possible leak of sensitive data due to a missing permission check. This could lead tEPSS 0.1%CVE-2025-26437MEDIUMIn CredentialManagerServiceStub of CredentialManagerService.java, there is a possible way to retrieve candidate credentials due to a missingEPSS 0.1%CVE-2024-43077HIGHIn DevmemValidateFlags of devicemem_server.c , there is a possible out of bounds write due to memory corruption. This could lead to local esEPSS 0.1%CVE-2018-9424HIGHIn CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to locaEPSS 0.1%CVE-2025-36893MEDIUMIn ReadTachyonCommands of gxp_main_actor.cc, there is a possible information leak due to uninitialized data. This could lead to local informEPSS 0.1%CVE-2025-48551MEDIUMIn multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused deputy. This could EPSS 0.1%CVE-2018-9469HIGHIn multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut due to a missing permission check. This coEPSS 0.1%CVE-2024-47012HIGHIn mm_GetMobileIdIndexForNsUpdate of mm_GmmPduCodec.c, there is a possible out of bounds write due to an incorrect bounds check. This could EPSS 0.1%CVE-2025-32316MEDIUMIn gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no EPSS 0.1%