Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.1
CVE-2025-10890
Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTM…
Chrome
140.0.7339.207+
CRITICAL 9.8
CVE-2025-36897
In unknown of cd_CnMsgCodecUserApi.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executi…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-36904
WLAN in Android before 2025-09-05 on Google Pixel devices allows elevation of privilege, aka A-396458384.
Android
Mitigation only
CRITICAL 9.8
CVE-2025-36890
Elevation of Privilege
Android
No fix yet
CRITICAL 9.8
CVE-2025-36896
WLAN in Android before 2025-09-05 on Google Pixel devices allows elevation of privilege, aka A-394765106.
Android
Mitigation only
CRITICAL 9.8
CVE-2025-26416
In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote esc…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22429
In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of pri…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22435
In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22408
In rfc_check_send_cmd of rfc_utils.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to remote code exec…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22403
In sdp_snd_service_search_req of sdp_discovery.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to remo…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-0074
In process_service_attr_rsp of sdp_discovery.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to remote…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-0075
In process_service_search_attr_req of sdp_server.cc, there is a possible way to execute arbitrary code due to a use after free. This could lead to re…
Android
Mitigation only
CRITICAL 9.6
CVE-2025-4609
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 136.0.7103.113 allowed a remote attacker to poten…
Chrome
136.0.7103.113+
CRITICAL 9.8
CVE-2025-6179
Permissions Bypass in Extension Management in Google ChromeOS 16181.27.0 on managed Chrome devices allows a local attacker to disable extensi…
Chrome Os
Mitigation only
CRITICAL 9.8
CVE-2025-4052
Inappropriate implementation in DevTools in Google Chrome prior to 136.0.7103.59 allowed a remote attacker who convinced a user to engage in specific…
Chrome
136.0.7103.59+
CRITICAL 10.0
CVE-2025-0982
Sandbox escape in the JavaScript Task feature of Google Cloud Application Integration allows an actor to execute arbitrary unsandboxed code via craft…
Application Integration
after 2025-01-23
CRITICAL 9.8
CVE-2024-49747
In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to remote …
Android
Mitigation only
CRITICAL 9.8
CVE-2024-49748
In gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote …
Android
Mitigation only
CRITICAL 9.8
CVE-2024-53842
In cc_SendCcImsInfoIndMsg of cc_MmConManagement.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote c…
Android
Mitigation only
CRITICAL 9.8
CVE-2018-9388
In store_upgrade and store_cmd of drivers/input/touchscreen/stm/ftm4_pdc.c, there are out of bound writes due to missing bounds checks or integer und…
Android
Mitigation only
CRITICAL 9.8
CVE-2018-9430
In prop2cfg of btif_storage.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution wi…
Android
Patch available
CRITICAL 9.8
CVE-2018-9418
In handle_app_cur_val_response of dtif_rc.cc, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote code…
Android
Patch available
CRITICAL 9.6
CVE-2024-9369
Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to pe…
Chrome
129.0.6668.89+
CRITICAL 9.8
CVE-2018-9478
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This…
Android
Patch available
CRITICAL 9.8
CVE-2018-9479
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This…
Android
Patch available
CRITICAL 9.8
CVE-2018-9467
In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security deci…
Android
Mitigation only
CRITICAL 9.8
CVE-2024-43091
In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution…
Android
Patch available
CRITICAL 9.8
CVE-2024-44097
According to the researcher: "The TLS connections are encrypted against tampering or eavesdropping. However, the application does not validate the se…
Nest Doorbell \(battery\) Firmware
1.73c+
CRITICAL 9.6
CVE-2024-7024
Inappropriate implementation in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform a sandbox escape via a cr…
Chrome
126.0.6478.54+
CRITICAL 9.6
CVE-2024-7971 KEVEPSS 21%
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium …
Chrome
128.0.2739.42 / 128.0.6613.84+