Vulnerabilidades en google

7001 resultados
Análisis Vexday

Google registra presença mínima no panorama de risco com apenas 4 vulnerabilidades na base, nenhuma sob exploração ativa (KEV) e apenas 1 crítica identificada. A fraqueza dominante relaciona-se a validação inadequada de entrada (CWE-20), indicando risco controlado e sem pressão temporal dado que não há publicações nos últimos 90 dias.

CVE-2026-0007HIGHIn writeToParcel of WindowInfo.cpp, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. EPSS 0.1%CVE-2026-10010MEDIUMInappropriate implementation in Input in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker who had compromised the EPSS 0.1%CVE-2026-17766LOWInsufficient validation of untrusted input in Clipboard in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak EPSS 0.1%CVE-2025-48561MEDIUMIn multiple locations, there is a possible way to access data displayed on the screen due to side channel information disclosure. This couldEPSS 0.1%CVE-2024-25993HIGHIn tmu_reset_tmu_trip_counter of , there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatioEPSS 0.1%CVE-2025-36923HIGHIn NrmmDecoder::DecodeSORTransparentContext of cn_NrmmDecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. ThEPSS 0.1%CVE-2026-10032MEDIUMArbitrary JavaScript Execution via openUrl in @a2ui/web_coreEPSS 0.1%CVE-2026-13800HIGHInappropriate implementation in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privEPSS 0.1%CVE-2026-17864HIGHInappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilegEPSS 0.1%CVE-2023-21351HIGHIn multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation EPSS 0.1%CVE-2026-16414CRITICALInsufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially peEPSS 0.1%CVE-2023-45773—In multiple functions of btm_ble_gap.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escEPSS 0.1%CVE-2025-5009LOWInformation Disclosure in Gemini iOS AppEPSS 0.1%CVE-2026-14124HIGHInappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OSEPSS 0.1%CVE-2023-45775—In CreateAudioBroadcast of broadcaster.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local eEPSS 0.1%CVE-2023-45774—In fixUpIncomingShortcutInfo of ShortcutService.java, there is a possible way to view another user's image due to a confused deputy. This coEPSS 0.1%CVE-2023-45776—In CreateAudioBroadcast of broadcaster.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local eEPSS 0.1%CVE-2026-3223HIGHZip Slip leading to Arbitrary File Write and Privilege Escalation in Google Web DesignerEPSS 0.1%CVE-2026-87552MEDIUMMissing authorization in TrustedWebActivities in Google Chrome on on Android prior to 153.0.8010.36 allowed a local attacker to obtain sensiEPSS 0.1%CVE-2026-0010HIGHIn onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escEPSS 0.1%