Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android HIGH 7.3
CVE-2025-48556

In multiple methods of NotificationChannel.java, there is a possible desynchronization from persistence due to improper input validation. This could …

Patch available
Fix from $1,950 2025-09-04
Android MEDIUM 6.1
CVE-2025-48554

In handlePackagesChanged of DevicePolicyManagerService.java, there is a possible persistent denial of service due to a logic error in the code. This …

Mitigation only
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48550

In testGrantSlicePermission of SliceManagerTest.java, there is a possible permanent denial of service due to a path traversal error. This could lead …

Patch available
Fix from $1,600 2025-09-04
Android MEDIUM 5.0
CVE-2025-48551

In multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused deputy. This could lead to l…

Patch available
Fix from $1,600 2025-09-04
Android HIGH 7.8
CVE-2025-48544

In multiple locations, there is a possible way to read files belonging to other apps due to SQL injection. This could lead to local escalation of pri…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48546

In checkPermissions of SafeActivityOptions.java, there is a possible background activity launch due to a logic error in the code. This could lead to …

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48549

In multiple locations, there is a possible way to record audio via a background app due to a missing permission check. This could lead to local escal…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.3
CVE-2025-48547

In multiple locations, there is a possible one-time permission bypass due to a logic error in the code. This could lead to local escalation of privil…

No fix yet
Fix from $1,950 2025-09-04
Android HIGH 7.3
CVE-2025-48548

In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without displaying the privacy indicator due to a race co…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.1
CVE-2025-48545

In isSystemUid of AccountManagerService.java, there is a possible way for an app to access privileged APIs due to a confused deputy. This could lead …

Patch available
Fix from $1,950 2025-09-04
Android HIGH 8.8
CVE-2025-48543 KEV

In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use after free. This could lead to l…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 8.0
CVE-2025-48539

In SendPacketToPeer of acl_arbiter.cc, there is a possible out of bounds read due to a use after free. This could lead to remote (proximal/adjacent) …

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48540

In processTransactInternal of RpcState.cpp, there is a possible local out of memory write due to a logic error in the code. This could lead to local …

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48541

In onCreate of FaceSettings.java, there is a possible way to remove biometric unlock across user profiles due to improper input validation. This coul…

Patch available
Fix from $1,950 2025-09-04
Android MEDIUM 5.5
CVE-2025-48538

In setApplicationHiddenSettingAsUser of PackageManagerService.java, there is a possible way to hide a system critical package due to improper input v…

Patch available
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48542

In multiple functions of AccountManagerService.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to l…

Patch available
Fix from $1,600 2025-09-04
Android HIGH 8.8
CVE-2025-48534

In getDefaultCBRPackageName of CellBroadcastHandler.java, there is a possible escalation of privilege due to a logic error in the code. This could le…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48531

In getCallingPackageName of CredentialStorage, there is a possible permission bypass due to a logic error in the code. This could lead to local escal…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48535

In assertSafeToStartCustomActivity of AppRestrictionsFragment.java , there is a possible way to exploit a parcel mismatch resulting in a launch anywh…

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.3
CVE-2025-48532

In markMediaAsFavorite of MediaProvider.java, there is a possible way to bypass the WRITE_EXTERNAL_STORAGE permission due to a confused deputy. This …

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.1
CVE-2025-48537

In multiple locations, there is a possible way to persistently DoS the device due to improper input validation. This could lead to local information …

Patch available
Fix from $1,950 2025-09-04
Android HIGH 7.0
CVE-2025-48533

In multiple locations, there is a possible way to use apps linked from a context menu of a lockscreen app due to a race condition. This could lead to…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 8.1
CVE-2025-48530

In multiple locations, there is a possible condition that results in OOB accesses due to an incorrect bounds check. This could lead to remote code ex…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-48523

In onCreate of SelectAccountActivity.java, there is a possible way to add contacts without permission due to a logic error in the code. This could le…

Patch available
Fix from $1,950 2025-09-04
Android MEDIUM 6.2
CVE-2025-48527

In multiple locations, there is a possible way to leak hidden work profile notifications due to a logic error in the code. This could lead to local i…

Patch available
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48524

In isSystem of WifiPermissionsUtil.java, there is a possible permission bypass due to a missing permission check. This could lead to local denial of …

Mitigation only
Fix from $1,600 2025-09-04
Android MEDIUM 5.5
CVE-2025-48529

In setRingtoneUri of VoicemailNotificationSettingsUtil.java , there is a possible cross user data leak due to a confused deputy. This could lead to l…

Patch available
Fix from $1,600 2025-09-04
Android HIGH 7.8
CVE-2025-32345

In updateState of ContentProtectionTogglePreferenceController.java, there is a possible way for a secondary user to disable the primary user's decept…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-32346

In onActivityResult of VoicemailSettingsActivity.java, there is a possible work profile contact number leak due to a confused deputy. This could lead…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-32347

In onStart of BiometricEnrollIntroduction.java, there is a possible way to determine the device's location due to an unsafe PendingIntent. This could…

Patch available
Fix from $1,950 2025-09-04