Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Android CRITICAL 9.8
CVE-2025-36896

WLAN in Android before 2025-09-05 on Google Pixel devices allows elevation of privilege, aka A-394765106.

Mitigation only
Fix from $2,300 2025-09-04
Android HIGH 8.8
CVE-2025-36891

Elevation of privilege

No fix yet
Fix from $1,950 2025-09-04
Android HIGH 7.8
CVE-2025-36887

In wl_cfgscan_update_v3_schedscan_results() of wl_cfgscan.c, there is a possible out of bounds write due to an incorrect bounds check. This could le…

Mitigation only
Fix from $1,950 2025-09-04
Android HIGH 7.5
CVE-2025-36892

Denial of service

No fix yet
Fix from $1,950 2025-09-04
Android HIGH 7.5
CVE-2025-36894

In TBD of TBD, there is a possible DoS due to a missing null check. This could lead to remote denial of service with no additional execution privileg…

No fix yet
Fix from $1,950 2025-09-04
Android HIGH 7.5
CVE-2025-36895

Information disclosure

No fix yet
Fix from $1,950 2025-09-04
Android MEDIUM 5.5
CVE-2025-36893

In ReadTachyonCommands of gxp_main_actor.cc, there is a possible information leak due to uninitialized data. This could lead to local information dis…

Mitigation only
Fix from $1,600 2025-09-04
Android HIGH 7.8
CVE-2024-56190

In wl_update_hidden_ap_ie() of wl_cfgscan.c, there is a possible out of bounds write due to improper input validation. This could lead to local escal…

Mitigation only
Fix from $1,950 2025-09-04
Android MEDIUM 6.5
CVE-2024-56189

In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i…

Mitigation only
Fix from $1,600 2025-09-04
Chrome MEDIUM 5.4
CVE-2025-9867

Inappropriate implementation in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a c…

Fix: 140.0.7339.80+
Fix from $1,600 2025-09-03
Chrome HIGH 8.8
CVE-2025-9866

Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a …

Fix: 140.0.7339.80+
Fix from $1,950 2025-09-03
Chrome MEDIUM 5.4
CVE-2025-9865

Inappropriate implementation in Toolbar in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker who convinced a user to engage i…

Fix: 140.0.7339.80+
Fix from $1,600 2025-09-03
Android CRITICAL 9.8
CVE-2025-26416

In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote esc…

Mitigation only
Fix from $2,300 2025-09-02
Android HIGH 7.8
CVE-2025-22438

In afterKeyEventLockedInterruptable of InputDispatcher.cpp, there is a possible use after free. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.3
CVE-2025-22439

In onLastAccessedStackLoaded of ActionHandler.java , there is a possible way to bypass storage restrictions across apps due to a missing permission c…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.0
CVE-2025-22442

In multiple functions of DevicePolicyManagerService.java, there is a possible way to install unauthorized applications into a newly created work prof…

Mitigation only
Fix from $1,950 2025-09-02
Android CRITICAL 9.8
CVE-2025-22429

In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of pri…

Mitigation only
Fix from $2,300 2025-09-02
Android CRITICAL 9.8
CVE-2025-22435

In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege…

Mitigation only
Fix from $2,300 2025-09-02
Android HIGH 7.8
CVE-2025-22428

In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible way to grant permissions to an app on the secondary user from the pr…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.8
CVE-2025-22433

In canForward of IntentForwarderActivity.java, there is a possible bypass of the cross profile intent filter most commonly used in Work Profile scena…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.8
CVE-2025-22434

In handleKeyGestureEvent of PhoneWindowManager.java, there is a possible lock screen bypass due to a logic error in the code. This could lead to loca…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.8
CVE-2025-22437

In setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due to a logic error in the code.…

Mitigation only
Fix from $1,950 2025-09-02
Android MEDIUM 5.5
CVE-2025-22430

In isInSignificantPlace of multiple files, there is a possible way to access sensitive information due to a missing permission check. This could lead…

Mitigation only
Fix from $1,600 2025-09-02
Android MEDIUM 5.5
CVE-2025-22431

In multiple locations, there is a possible method for a malicious app to prevent dialing emergency services under limited circumstances due to a logi…

Mitigation only
Fix from $1,600 2025-09-02
Android HIGH 7.8
CVE-2025-22416

In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a confused deputy. This could lead to local escalati…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.8
CVE-2025-22418

In multiple locations, there is a possible confused deputy due to Intent Redirect. This could lead to local escalation of privilege with no additiona…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.8
CVE-2025-22422

In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app when its result will be used in …

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.5
CVE-2025-22423

In ParseTag of dng_ifd.cpp, there is a possible way to crash the image renderer due to a missing bounds check. This could lead to remote denial of se…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.3
CVE-2025-22417

In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacking/overlay attack. This could…

Mitigation only
Fix from $1,950 2025-09-02
Android HIGH 7.3
CVE-2025-22419

In multiple locations, there is a possible way to mislead the user into enabling malicious phone calls forwarding due to a tapjacking/overlay attack.…

Mitigation only
Fix from $1,950 2025-09-02