Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.5
CVE-2026-28576
In Contacts Provider, there is a possible way to access the contacts database due to SQL injection. This could lead to local information disclosure w…
Android
Mitigation only
MEDIUM 5.9
CVE-2026-0075
In multiple functions, there is a possible way to access the contacts database due to a SQL injection. This could lead to local escalation of privile…
Android
Mitigation only
HIGH 8.4
CVE-2025-48650
In multiple locations, there is a possible information disclosure due to SQL injection. This could lead to local escalation of privilege with no addi…
Android
Mitigation only
HIGH 7.8
CVE-2025-48544
In multiple locations, there is a possible way to read files belonging to other apps due to SQL injection. This could lead to local escalation of pri…
Android
Mitigation only
HIGH 7.8
CVE-2025-32327
In multiple functions of PickerDbFacade.java, there is a possible unauthorized data access due to SQL injection. This could lead to local escalation …
Android
Patch available
MEDIUM 5.5
CVE-2023-35683
In bindSelection of DatabaseUtils.java, there is a possible way to access files from other applications due to SQL injection. This could lead to loca…
Android
Patch available
MEDIUM 5.5
CVE-2022-42535
In a query in MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead to local information disclos…
Android
Patch available
MEDIUM 5.5
CVE-2022-20517
In getMessagesByPhoneNumber of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead to local in…
Android
Patch available
MEDIUM 5.5
CVE-2022-20518
In query of MmsSmsProvider.java, there is a possible access to restricted tables due to SQL injection. This could lead to local information disclosur…
Android
Patch available
MEDIUM 5.5
CVE-2022-20351
In queryInternal of CallLogProvider.java, there is a possible access to voicemail information due to SQL injection. This could lead to local informat…
Android
Patch available
MEDIUM 6.5
CVE-2021-25427
SQL injection vulnerability in Bluetooth prior to SMR July-2021 Release 1 allows unauthorized access to paired device information
Android
Mitigation only
MEDIUM 5.5
CVE-2020-0344
In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to local information disclosure with no additional exe…
Android
Mitigation only
MEDIUM 5.5
CVE-2020-0352
In MediaProvider, there is a possible permissions bypass due to SQL injection. This could lead to local information disclosure with no additional exe…
Android
Mitigation only
HIGH 8.1
CVE-2019-20613
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is time-based SQL injection in Contacts. The Samsung ID is S…
Android
Mitigation only
HIGH 7.8
CVE-2019-20591
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the Gear VR Service Conte…
Android
Mitigation only
HIGH 7.8
CVE-2019-20592
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the Story Video Editor Co…
Android
Mitigation only
CRITICAL 9.8
CVE-2019-20576
An issue was discovered on Samsung mobile devices with P(9.0) software. The MemorySaver Content Provider allows SQL injection. The Samsung ID is SVE-…
Android
Mitigation only
HIGH 7.8
CVE-2019-20574
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the Wi-Fi history Content…
Android
Mitigation only
HIGH 7.8
CVE-2019-20573
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software. There is local SQL injection in the RCS Content Provider.…
Android
Mitigation only
HIGH 7.5
CVE-2019-2211
In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information disclosure with no additiona…
Android
Mitigation only
HIGH 7.8
CVE-2019-2195
In tokenize of sqlite3_android.cpp, there is a possible attacker controlled INSERT statement due to improper input validation. This could lead to loc…
Android
Mitigation only
MEDIUM 5.5
CVE-2019-2196
In Download Provider, there is possible SQL injection. This could lead to local information disclosure with no additional execution privileges needed…
Android
Mitigation only
MEDIUM 5.5
CVE-2019-2198
In Download Provider, there is a possible SQL injection vulnerability. This could lead to local information disclosure with no additional execution p…
Android
Mitigation only
MEDIUM 5.5
CVE-2018-9493
In the content provider of the download manager, there is a possible SQL injection due to improper input validation. This could lead to local informa…
Android
Patch available
CRITICAL 9.8
CVE-2018-14066
The content://wappush content provider in com.android.provider.telephony, as found in some custom ROMs for Android phones, allows SQL injection. One …
Android
No fix yet
CRITICAL 9.8
CVE-2014-4959
**DISPUTED** SQL injection vulnerability in SQLiteDatabase.java in the SQLi Api in Android allows remote attackers to execute arbitrary SQL commands …
Android
No fix yet
HIGH 7.5
CVE-2014-8507
Multiple SQL injection vulnerabilities in the queryLastApp method in packages/WAPPushManager/src/com/android/smspush/WapPushManager.java in the WAPPu…
Android
after 4.4.4