Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2025-36896
WLAN in Android before 2025-09-05 on Google Pixel devices allows elevation of privilege, aka A-394765106.
Android
Mitigation only
HIGH 8.8
CVE-2025-36891
Elevation of privilege
Android
No fix yet
HIGH 7.8
CVE-2025-36887
In wl_cfgscan_update_v3_schedscan_results() of wl_cfgscan.c, there is a possible out of bounds write due to an incorrect bounds check. This could le…
Android
Mitigation only
HIGH 7.5
CVE-2025-36892
Denial of service
Android
No fix yet
HIGH 7.5
CVE-2025-36894
In TBD of TBD, there is a possible DoS due to a missing null check. This could lead to remote denial of service with no additional execution privileg…
Android
No fix yet
HIGH 7.5
CVE-2025-36895
Information disclosure
Android
No fix yet
MEDIUM 5.5
CVE-2025-36893
In ReadTachyonCommands of gxp_main_actor.cc, there is a possible information leak due to uninitialized data. This could lead to local information dis…
Android
Mitigation only
HIGH 7.8
CVE-2024-56190
In wl_update_hidden_ap_ie() of wl_cfgscan.c, there is a possible out of bounds write due to improper input validation. This could lead to local escal…
Android
Mitigation only
MEDIUM 6.5
CVE-2024-56189
In SAEMM_DiscloseMsId of SAEMM_RadioMessageCodec.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i…
Android
Mitigation only
MEDIUM 5.4
CVE-2025-9867
Inappropriate implementation in Downloads in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker to perform UI spoofing via a c…
Chrome
140.0.7339.80+
HIGH 8.8
CVE-2025-9866
Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a …
Chrome
140.0.7339.80+
MEDIUM 5.4
CVE-2025-9865
Inappropriate implementation in Toolbar in Google Chrome on Android prior to 140.0.7339.80 allowed a remote attacker who convinced a user to engage i…
Chrome
140.0.7339.80+
CRITICAL 9.8
CVE-2025-26416
In initializeSwizzler of SkBmpStandardCodec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote esc…
Android
Mitigation only
HIGH 7.8
CVE-2025-22438
In afterKeyEventLockedInterruptable of InputDispatcher.cpp, there is a possible use after free. This could lead to local escalation of privilege with…
Android
Mitigation only
HIGH 7.3
CVE-2025-22439
In onLastAccessedStackLoaded of ActionHandler.java , there is a possible way to bypass storage restrictions across apps due to a missing permission c…
Android
Mitigation only
HIGH 7.0
CVE-2025-22442
In multiple functions of DevicePolicyManagerService.java, there is a possible way to install unauthorized applications into a newly created work prof…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22429
In multiple locations, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of pri…
Android
Mitigation only
CRITICAL 9.8
CVE-2025-22435
In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege…
Android
Mitigation only
HIGH 7.8
CVE-2025-22428
In hasInteractAcrossUsersFullPermission of AppInfoBase.java, there is a possible way to grant permissions to an app on the secondary user from the pr…
Android
Mitigation only
HIGH 7.8
CVE-2025-22433
In canForward of IntentForwarderActivity.java, there is a possible bypass of the cross profile intent filter most commonly used in Work Profile scena…
Android
Mitigation only
HIGH 7.8
CVE-2025-22434
In handleKeyGestureEvent of PhoneWindowManager.java, there is a possible lock screen bypass due to a logic error in the code. This could lead to loca…
Android
Mitigation only
HIGH 7.8
CVE-2025-22437
In setMediaButtonReceiver of multiple files, there is a possible way to launch arbitrary activities from background due to a logic error in the code.…
Android
Mitigation only
MEDIUM 5.5
CVE-2025-22430
In isInSignificantPlace of multiple files, there is a possible way to access sensitive information due to a missing permission check. This could lead…
Android
Mitigation only
MEDIUM 5.5
CVE-2025-22431
In multiple locations, there is a possible method for a malicious app to prevent dialing emergency services under limited circumstances due to a logi…
Android
Mitigation only
HIGH 7.8
CVE-2025-22416
In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a confused deputy. This could lead to local escalati…
Android
Mitigation only
HIGH 7.8
CVE-2025-22418
In multiple locations, there is a possible confused deputy due to Intent Redirect. This could lead to local escalation of privilege with no additiona…
Android
Mitigation only
HIGH 7.8
CVE-2025-22422
In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app when its result will be used in …
Android
Mitigation only
HIGH 7.5
CVE-2025-22423
In ParseTag of dng_ifd.cpp, there is a possible way to crash the image renderer due to a missing bounds check. This could lead to remote denial of se…
Android
Mitigation only
HIGH 7.3
CVE-2025-22417
In finishTransition of Transition.java, there is a possible way to bypass touch filtering restrictions due to a tapjacking/overlay attack. This could…
Android
Mitigation only
HIGH 7.3
CVE-2025-22419
In multiple locations, there is a possible way to mislead the user into enabling malicious phone calls forwarding due to a tapjacking/overlay attack.…
Android
Mitigation only