Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android MEDIUM 5.5
CVE-2022-47492

In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

Mitigation only
Fix from $1,600 2023-05-09
Android MEDIUM 5.5
CVE-2022-47493

In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

No fix yet
Fix from $1,600 2023-05-09
Android MEDIUM 5.5
CVE-2022-38685

In bluetooth service, there is a possible missing permission check. This could lead to local denial of service in bluetooth service with no additiona…

No fix yet
Fix from $1,600 2023-05-09
Web Stories MEDIUM 6.5
CVE-2023-1979

The Web Stories for WordPress plugin supports the WordPress built-in functionality of protecting content with a password. The content is then only ac…

Fix: 1.32.0+
Fix from $1,600 2023-05-08
Chrome HIGH 8.8
CVE-2023-2461

Use after free in OS Inputs in Google Chrome on ChromeOS prior to 113.0.5672.63 allowed a remote attacker who convinced a user to enage in specific U…

Fix: 113.0.5672.63+
Fix from $1,950 2023-05-03
Chrome HIGH 7.1
CVE-2023-2460

Insufficient validation of untrusted input in Extensions in Google Chrome prior to 113.0.5672.63 allowed an attacker who convinced a user to install …

Fix: 113.0.5672.63+
Fix from $1,950 2023-05-03
Chrome MEDIUM 6.5
CVE-2023-2459

Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to bypass permission restrictions via a cra…

Fix: 113.0.5672.63+
Fix from $1,600 2023-05-03
Espv2 CRITICAL 9.8
CVE-2023-30845

ESPv2 is a service proxy that provides API management capabilities using Google Service Infrastructure. ESPv2 2.20.0 through 2.42.0 contains an authe…

Fix: 2.43.0+
Fix from $2,300 2023-04-26
Android HIGH 7.8
CVE-2023-21100

In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with…

Patch available
Fix from $1,950 2023-04-19
Android CRITICAL 9.8
CVE-2023-21096

In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution with no additional execution pr…

Patch available
Fix from $2,300 2023-04-19
Android HIGH 8.8
CVE-2023-21085

In nci_snd_set_routing_cmd of nci_hmsgs.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proxima…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-20950

In AlarmManagerActivity of AlarmManagerActivity.java, there is a possible way to bypass background activity launch restrictions via a pendingIntent. …

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-20967

In avdt_scb_hdl_pkt_no_frag of avdt_scb_act.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es…

Mitigation only
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21081

In multiple functions of PackageInstallerService.java and related files, there is a possible way to bypass background activity launch restrictions du…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21083

In onNullBinding of CallScreeningServiceHelper.java, there is a possible way to record audio without showing a privacy indicator due to a permissions…

Mitigation only
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21086

In isToggleable of SecureNfcEnabler.java and SecureNfcPreferenceController.java, there is a possible way to enable NFC from a secondary account due t…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21088

In deliverOnFlushComplete of LocationProviderManager.java, there is a possible way to bypass background activity launch restrictions due to a logic e…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21089

In startInstrumentation of ActivityManagerService.java, there is a possible way to keep the foreground service alive while the app is in the backgrou…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21092

In retrieveServiceLocked of ActiveServices.java, there is a possible way to dynamically register a BroadcastReceiver using permissions of System App …

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21093

In extractRelativePath of FileUtils.java, there is a possible way to access files in a directory belonging to other applications due to a path traver…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21094

In sanitize of LayerState.cpp, there is a possible way to take over the screen display and swap the display content due to a missing permission check…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21097

In toUriInner of Intent.java, there is a possible way to launch an arbitrary activity due to a confused deputy. This could lead to local escalation o…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21098

In multiple functions of AccountManagerService.java, there is a possible loading of arbitrary code into the System Settings app due to a confused dep…

Patch available
Fix from $1,950 2023-04-19
Android HIGH 7.8
CVE-2023-21099

In multiple methods of PackageInstallerSession.java, there is a possible way to start foreground services from the background due to a logic error in…

Patch available
Fix from $1,950 2023-04-19
Android MEDIUM 6.7
CVE-2023-21084

In buildPropFile of filesystem.go, there is a possible insecure hash due to an improperly used crypto. This could lead to local escalation of privile…

Mitigation only
Fix from $1,600 2023-04-19
Android MEDIUM 6.6
CVE-2023-20941

In acc_ctrlrequest_composite of f_accessory.c, there is a possible out of bounds write due to a missing bounds check. This could lead to physical esc…

Mitigation only
Fix from $1,600 2023-04-19
Android MEDIUM 5.5
CVE-2023-21080

In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio…

Mitigation only
Fix from $1,600 2023-04-19
Android MEDIUM 5.5
CVE-2023-21082

In getNumberFromCallIntent of NewOutgoingCallIntentBroadcaster.java, there is a possible way to enumerate other user's contact phone number due to a …

Mitigation only
Fix from $1,600 2023-04-19
Android MEDIUM 5.5
CVE-2023-21087

In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop. This could lead to local persistent denial of serv…

Patch available
Fix from $1,600 2023-04-19
Android MEDIUM 5.5
CVE-2023-21091

In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a missing permission check. This co…

Patch available
Fix from $1,600 2023-04-19