Vulnerability index

Browse CVEs

1,055 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android MEDIUM 5.5
CVE-2023-48346

In video decoder, there is a possible improper input validation. This could lead to local denial of service with no additional execution privileges n…

No fix yet
Fix from $1,600 2024-01-18
Chromecast Firmware CRITICAL 9.8
CVE-2023-48425

U-Boot vulnerability resulting in persistent Code Execution 

Fix: 2023-10-01+
Fix from $2,300 2023-12-11
Android HIGH 7.8
CVE-2023-40097

In hasPermissionForActivity of PackageManagerHelper.java, there is a possible URI grant due to improper input validation. This could lead to local es…

Patch available
Fix from $1,950 2023-12-04
Android MEDIUM 5.5
CVE-2022-48457

In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional exec…

Mitigation only
Fix from $1,600 2023-11-01
Android MEDIUM 5.5
CVE-2022-48458

In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional exec…

Mitigation only
Fix from $1,600 2023-11-01
Android MEDIUM 5.5
CVE-2022-48459

In TeleService, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional exec…

Mitigation only
Fix from $1,600 2023-11-01
Android HIGH 7.5
CVE-2023-21391

In Messaging, there is a possible way to disable the messaging application due to improper input validation. This could lead to remote denial of serv…

Fix: 14.0+
Fix from $1,950 2023-10-30
Android MEDIUM 6.7
CVE-2023-32826

In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,600 2023-10-02
Android MEDIUM 6.7
CVE-2023-32827

In camera middleware, there is a possible out of bounds write due to a missing input validation. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,600 2023-10-02
Android HIGH 7.5
CVE-2023-33914

In NIA0 algorithm in Security Mode Command, there is a possible missing verification incorrect input. This could lead to remote information disclosur…

No fix yet
Fix from $1,950 2023-09-04
Chrome HIGH 8.8
CVE-2023-4357EPSS 47%

Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to bypass file access restriction…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Android MEDIUM 5.5
CVE-2023-21284

In multiple functions of DevicePolicyManager.java, there is a possible way to prevent enabling the Find my Device feature due to improper input valid…

Patch available
Fix from $1,600 2023-08-14
Android HIGH 7.8
CVE-2023-21272

In readFrom of Uri.java, there is a possible bad URI permission grant due to improper input validation. This could lead to local escalation of privil…

Patch available
Fix from $1,950 2023-08-14
Chrome MEDIUM 6.5
CVE-2022-4911

Insufficient data validation in DevTools in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to bypass content security policy via a cr…

Fix: 106.0.5249.62+
Fix from $1,600 2023-07-29
Chrome MEDIUM 6.5
CVE-2022-4925

Insufficient validation of untrusted input in QUIC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to perform header splitting via m…

Fix: 97.0.4692.71+
Fix from $1,600 2023-07-29
Android HIGH 7.3
CVE-2023-21251

In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could le…

Patch available
Fix from $1,950 2023-07-13
Android HIGH 7.8
CVE-2023-21192

In setInputMethodWithSubtypeIdLocked of InputMethodManagerService.java, there is a possible way to setup input methods that are not enabled due to im…

Mitigation only
Fix from $1,950 2023-06-28
Android HIGH 7.8
CVE-2023-21138

In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input validation. This could lead to loc…

Patch available
Fix from $1,950 2023-06-15
Android MEDIUM 5.5
CVE-2023-21136

In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input validation. This could lead to loca…

Mitigation only
Fix from $1,600 2023-06-15
Android MEDIUM 5.5
CVE-2023-21143

In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input validation. This could lead to loc…

Patch available
Fix from $1,600 2023-06-15
Android HIGH 7.8
CVE-2023-21121

In onResume of AppManagementFragment.java, there is a possible way to prevent users from forgetting a previously connected VPN due to improper input …

Mitigation only
Fix from $1,950 2023-06-15
Android HIGH 7.8
CVE-2023-21135

In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to improper input validation. This …

Patch available
Fix from $1,950 2023-06-15
Android MEDIUM 6.7
CVE-2023-20708

In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System exe…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20718

In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20720

In pqframework, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System ex…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20721

In isp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20722

In m4u, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 5.5
CVE-2023-21111

In several functions of PhoneAccountRegistrar.java, there is a possible way to prevent an access to emergency services due to improper input validati…

Patch available
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20707

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 5.5
CVE-2023-20704

In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional exec…

Mitigation only
Fix from $1,600 2023-05-15