Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tensorflow MEDIUM 6.5
CVE-2025-55556

TensorFlow v2.18.0 was discovered to output random results when compiling Embedding, leading to unexpected behavior in the application.

No fix yet
Fix from $1,600 2025-09-25
Chrome CRITICAL 9.8
CVE-2025-10585 KEVEPSS 5%

Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 140.0.7339.185+
Fix from $2,300 2025-09-24
Chrome CRITICAL 9.1
CVE-2025-10890

Side-channel information leakage in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to leak cross-origin data via a crafted HTM…

Fix: 140.0.7339.207+
Fix from $2,300 2025-09-24
Chrome HIGH 8.8
CVE-2025-10501

Use after free in WebRTC in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 140.0.7339.185+
Fix from $1,950 2025-09-24
Chrome HIGH 8.8
CVE-2025-10502

Heap buffer overflow in ANGLE in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via malicious…

Fix: 140.0.7339.185+
Fix from $1,950 2025-09-24
Chrome HIGH 8.8
CVE-2025-10891EPSS 7%

Integer overflow in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 140.0.7339.207+
Fix from $1,950 2025-09-24
Chrome HIGH 8.8
CVE-2025-10892

Integer overflow in V8 in Google Chrome prior to 140.0.7339.207 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 140.0.7339.207+
Fix from $1,950 2025-09-24
Chrome HIGH 8.8
CVE-2025-10500

Use after free in Dawn in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 140.0.7339.185+
Fix from $1,950 2025-09-24
Chrome HIGH 8.8
CVE-2025-10200

Use after free in Serviceworker in Google Chrome on Desktop prior to 140.0.7339.127 allowed a remote attacker to potentially exploit heap corruption …

Fix: 140.0.7339.127+
Fix from $1,950 2025-09-10
Chrome HIGH 8.8
CVE-2025-10201

Inappropriate implementation in Mojo in Google Chrome on Android, Linux, ChromeOS prior to 140.0.7339.127 allowed a remote attacker to bypass site is…

Fix: 140.0.7339.127+
Fix from $1,950 2025-09-10
Android HIGH 8.8
CVE-2025-32318

In Skia, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional …

Mitigation only
Fix from $1,950 2025-09-05
Android HIGH 7.8
CVE-2025-32320

In System UI, there is a possible way to view other users' images due to a confused deputy. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2025-09-05
Android MEDIUM 5.5
CVE-2025-32316

In gralloc4, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no additiona…

Mitigation only
Fix from $1,600 2025-09-05
Android MEDIUM 5.5
CVE-2025-32317

In App Widget, there is a possible Information Disclosure due to a confused deputy. This could lead to local information disclosure with no additiona…

Mitigation only
Fix from $1,600 2025-09-05
Android MEDIUM 5.5
CVE-2024-0028

In Audio Service, there is a possible way to obtain MAC addresses of nearby Bluetooth devices due to a missing permission check. This could lead to l…

Mitigation only
Fix from $1,600 2025-09-05
Android MEDIUM 5.5
CVE-2025-26434

In libxml2, there is a possible out of bounds read due to a buffer overflow. This could lead to local information disclosure with no additional execu…

Mitigation only
Fix from $1,600 2025-09-05
Android HIGH 7.8
CVE-2025-26431

In setupAccessibilityServices of AccessibilityFragment.java, there is a possible way to hide an enabled accessibility service due to a logic error in…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-26439

In getComponentName of AccessibilitySettingsUtils.java, there is a possible way to for a malicious Talkback service to be enabled instead of the syst…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-32322

In onCreate of MediaProjectionPermissionActivity.java , there is a possible way to grant a malicious app a token enabling unauthorized screen recordi…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-22414

In FrpBypassAlertActivity of FrpBypassAlertActivity.java, there is a possible way to bypass FRP due to a missing permission check. This could lead to…

Mitigation only
Fix from $1,950 2025-09-04
Android MEDIUM 6.2
CVE-2024-40664

In setupAccessibilityServices of AccessibilityFragment.java , there is a possible way to hide an enabled accessibility service due to a logic error i…

Mitigation only
Fix from $1,600 2025-09-04
Android HIGH 8.4
CVE-2025-48581

In VerifyNoOverlapInSessions of apexd.cpp, there is a possible way to block security updates due to a logic error in the code. This could lead to loc…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48563

In onNullBinding of RemoteFillService.java, there is a possible background activity launch due to an insecure default value. This could lead to local…

Mitigation only
Fix from $1,950 2025-09-04
Android MEDIUM 5.5
CVE-2025-48559

In multiple functions of AppOpsService.java, there is a possible add a large amount of app ops due to improper input validation. This could lead to l…

Patch available
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48560

In AndroidManifest.xml, there is a possible way for an app to monitor motion events due to a confused deputy. This could lead to local information di…

Mitigation only
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48561

In multiple locations, there is a possible way to access data displayed on the screen due to side channel information disclosure. This could lead to …

Patch available
Fix from $1,600 2025-09-04
Android MEDIUM 5.0
CVE-2025-48562

In writeContent of RemotePrintDocument.java, there is a possible information disclosure due to a logic error. This could lead to local information di…

Patch available
Fix from $1,600 2025-09-04
Android HIGH 7.8
CVE-2025-48552

In saveGlobalProxyLocked of DevicePolicyManagerService.java, there is a possible way to desync from persistence due to a logic error in the code. Thi…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48553

In handlePackagesChanged of DevicePolicyManagerService.java, there is a possible DoS of a device admin due to a logic error in the code. This could l…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48558

In multiple functions of BatteryService.java, there is a possible way to hijack implicit intent intended for system app due to Implicit intent hijack…

Patch available
Fix from $1,950 2025-09-04