Vulnerability index

Browse CVEs

4,652 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Chrome HIGH 8.8
CVE-2026-19556

Use after free in V8 in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML…

No fix yet
Fix from $4,900 2026-08-11
Chrome HIGH 8.8
CVE-2026-19559

Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HT…

No fix yet
Fix from $4,900 2026-08-11
Chrome HIGH 8.8
CVE-2026-19560

Use after free in Blink in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted H…

No fix yet
Fix from $4,900 2026-08-11
Chrome HIGH 8.3
CVE-2026-19557

Use after free in TabStrip in Google Chrome on Mac prior to 151.0.7922.137 allowed a remote attacker who had compromised the renderer process to pote…

No fix yet
Fix from $4,900 2026-08-11
Chrome HIGH 7.5
CVE-2026-19558

Use after free in Extensions in Google Chrome prior to 151.0.7922.137 allowed an attacker who convinced a user to install a malicious extension to ex…

No fix yet
Fix from $4,900 2026-08-11
Mcp Toolbox For Databases HIGH 7.5
CVE-2026-14541

An authentication bypass and audience confusion vulnerability exists in the Google OAuth provider component of Google mcp-toolbox version 1.4.0. When…

No fix yet
Fix from $1,950 2026-07-31
Mcp Toolbox For Databases CRITICAL 9.8
CVE-2026-14537

Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and v1.4.0 allows an unauthenticated at…

No fix yet
Fix from $2,300 2026-07-31
Android MEDIUM 5.5
CVE-2026-28573

In AndroidManifest.xml, there is a possible persistent denial of service due to a missing permission check. This could lead to local denial of servic…

Mitigation only
Fix from $1,600 2026-06-18
Android HIGH 7.8
CVE-2026-28615

In Telecomm, there is a possible way to initiate an unauthorized phone call due to a permissions bypass. This could lead to local escalation of privi…

Mitigation only
Fix from $1,950 2026-06-17
Android MEDIUM 5.5
CVE-2026-28575

In PackageInstaller.Session#transfer of frameworks/base/services/core/java/com/android/server/pm/PackageInstallerSession.java, there is a possible me…

Mitigation only
Fix from $1,600 2026-06-17
Android MEDIUM 5.5
CVE-2026-28576

In Contacts Provider, there is a possible way to access the contacts database due to SQL injection. This could lead to local information disclosure w…

Mitigation only
Fix from $1,600 2026-06-17
Android MEDIUM 5.5
CVE-2026-28587

In MmsSmsProvider of MmsSmsProvider.java, there is a possible way to retrieve sensitive information due to a missing permission check. This could lea…

Mitigation only
Fix from $1,600 2026-06-17
Android CRITICAL 10.0
CVE-2026-0092

In Package Manager, there is a possible device lock controller bypass due to a missing permission check. This could lead to local escalation of privi…

Mitigation only
Fix from $2,300 2026-06-17
Android HIGH 7.8
CVE-2026-0068

In createSessionInternal of PackageInstallerService.java, there is a possible method to remove a DPC app from a managed device without DO consent due…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2026-0071

In SettingsLib, there is a possible missing permission check due to a logic error in the code. This could lead to local escalation of privilege with …

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2026-0081

In NFC, there is a possible way to spoof an NFC event due to a missing permission check. This could lead to local escalation of privilege with no add…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2026-0082

In tryStartActivity of NfcDispatcher.java, there is a possible automatic special app access permission assignment due to an insecure default value. T…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.0
CVE-2026-0083

In Nfc::eventCallback() of Nfc.h, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with n…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2026-0019

In SettingsLib, there is a possible way to disable system components due to a logic error in the code. This could lead to local escalation of privile…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2026-0063

In setAllowedCarriers of PhoneInterfaceManager.java, there is a possible way to disable carrier restrictions due to a logic error in the code. This c…

Mitigation only
Fix from $1,950 2026-06-17
Android MEDIUM 5.5
CVE-2026-0064

In multiple places, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no a…

Mitigation only
Fix from $1,600 2026-06-17
Android HIGH 8.0
CVE-2025-48640

In multiple locations, there is a possible 3rd party passkey entry pairing approval due to a missing permission check. This could lead to remote (pro…

No fix yet
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2025-48643

In multiple locations there is a possible provisioning bypass due to improper input validation. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 7.8
CVE-2025-48617

In overrideConfig of CarrierConfigLoader.java, there is a possible way to bypass UID check due to a permissions bypass. This could lead to local esca…

Mitigation only
Fix from $1,950 2026-06-17
Android HIGH 8.8
CVE-2026-0154

In Modem, there is a possible way to trigger a modem crash during a SIP REFER request due to memory corruption. This could lead to remote code execut…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0160

In TextRtpPayloadDecoderNode::DecodeT140 of TextRtpPayloadDecoderNode.cpp, there is a possible out of bounds write due to a missing bounds check. Thi…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0161

In numberOfReportBlocks of RtpSession.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation o…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0162

In ParsePayloads of AudioSdpParser.cpp, there is a possible memory corruption due to type confusion. This could lead to remote code execution with no…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 8.8
CVE-2026-0164

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional executio…

Mitigation only
Fix from $1,950 2026-06-16
Android HIGH 7.5
CVE-2026-0156

In checkSsrcCollisionOnRcv of RtpSession.cpp, there is a possible memory safety issue due to a missing null check. This could lead to remote denial o…

Mitigation only
Fix from $1,950 2026-06-16