Vulnerabilidades en google
7003 resultadosCVE-2026-56945HIGHIn VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation of privilege with no additionaEPSS 0.1%CVE-2025-48541HIGHIn onCreate of FaceSettings.java, there is a possible way to remove biometric unlock across user profiles due to improper input validation. EPSS 0.1%CVE-2024-27221HIGHIn update_policy_data of , there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of priEPSS 0.1%CVE-2026-55290LOWIn setTo of ResourceTypes.cpp, there is a possible out-of-bounds heap read due to a missing bounds check. This could lead to local informatiEPSS 0.1%CVE-2026-28657HIGHIn onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy. ThEPSS 0.1%CVE-2025-26420MEDIUMIn multiple functions of GrantPermissionsActivity.java , there is a possible way to trick the user into granting the incorrect permission duEPSS 0.1%CVE-2026-102252MEDIUMPath Traversal in VMDK Extractor in OSV-SCALIBREPSS 0.1%CVE-2018-9390MEDIUMIn procfile_write of gl_proc.c, there is a possible out of bounds read of a
function pointer due to an incorrect bounds check. This couEPSS 0.1%CVE-2026-28616HIGHIn Setup Wizard, there is a possible way to force connection to a malicious network due to confused deputy. This could lead to local escalatEPSS 0.1%CVE-2026-28624HIGHIn multiple locations, there is a possible read/write access to files without the proper permissions due to a confused deputy. This could leEPSS 0.1%CVE-2025-48586HIGHIn onActivityResult of EditFdnContactScreen.java, there is a possible way to leak contacts from the work profile due to a confused deputy. TEPSS 0.1%CVE-2026-28611HIGHIn multiple functions of NfcService.java, there is a possible silent payment session hijacking enablement due to a missing permission check.EPSS 0.1%CVE-2024-29751MEDIUMIn asn1_ec_pkey_parse_p384 of asn1_common.c, there is a possible OOB Read due to a missing null check. This could lead to local information EPSS 0.1%CVE-2025-22424HIGHIn multiple locations, there is a possible way to reveal images across users due to improper input validation. This could lead to local escaEPSS 0.1%CVE-2026-58874HIGHIn multiple functions of SmsController.java, there is a possible escalation of privilege due to a missing permission check. This could lead EPSS 0.1%CVE-2025-26419LOWIn initPhoneSwitch of SystemSettingsFragment.java, there is a possible FRP bypass due to a logic error in the code. This could lead to localEPSS 0.1%CVE-2023-21249—In multiple functions of OneTimePermissionUserManager.java, there is a possible one-time permission retention due to a permissions bypass. TEPSS 0.1%CVE-2026-45521LOWIn openFile of AppFuseBridge.java, there is a possible information disclosure due to a missing permission check. This could lead to local inEPSS 0.1%CVE-2023-21165HIGHIn DevmemIntUnmapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local eEPSS 0.1%CVE-2025-48562MEDIUMIn writeContent of RemotePrintDocument.java, there is a possible information disclosure due to a logic error. This could lead to local inforEPSS 0.1%