cbcvebase.

Google Android vulnerabilities

6,770 known vulnerabilities affecting google/android.

Total CVEs
6,770
CISA KEV
13
actively exploited
Public exploits
50
Exploited in wild
24
Severity breakdown
CRITICAL471HIGH2821MEDIUM3190LOW252UNKNOWN36

Vulnerabilities

Page 48 of 339
CVE-2025-48555P3HIGHCVSS 7.8v13.0v14.0+6 more2025-12-08
CVE-2025-48555 [HIGH] CWE-441 CVE-2025-48555: In multiple functions of NotificationStation.java, there is a possible cross-profile information dis In multiple functions of NotificationStation.java, there is a possible cross-profile information disclosure due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-20766P3HIGHCVSS 7.8v14.0v15.0+1 more2025-12-02
CVE-2025-20766 [HIGH] CWE-457 CVE-2025-20766: In display, there is a possible memory corruption due to improper input validation. This could lead In display, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10196993; Issue ID: MSV-4820.
nvd
CVE-2025-32346P3HIGHCVSS 7.8v16.0v162025-09-04
CVE-2025-32346 [HIGH] CWE-441 CVE-2025-32346: In onActivityResult of VoicemailSettingsActivity.java, there is a possible work profile contact numb In onActivityResult of VoicemailSettingsActivity.java, there is a possible work profile contact number leak due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-44094P3HIGHCVSS 7.8vAndroid kernel2024-09-13
CVE-2024-44094 [HIGH] CWE-787 CVE-2024-44094: In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper in In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48558P3HIGHCVSS 7.8v13.0v14.0+6 more2025-09-04
CVE-2025-48558 [HIGH] CWE-927 CVE-2025-48558: In multiple functions of BatteryService.java, there is a possible way to hijack implicit intent inte In multiple functions of BatteryService.java, there is a possible way to hijack implicit intent intended for system app due to Implicit intent hijacking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-53840P3HIGHCVSS 7.8vAndroid kernel2025-01-03
CVE-2024-53840 [HIGH] CWE-276 CVE-2024-53840: there is a possible biometric bypass due to an unusual root cause. This could lead to local escalati there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-53835P3HIGHCVSS 7.8vAndroid kernel2025-01-03
CVE-2024-53835 [HIGH] CWE-276 CVE-2024-53835: there is a possible biometric bypass due to an unusual root cause. This could lead to local escalati there is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-47024P3HIGHCVSS 7.8vAndroid kernel2024-10-25
CVE-2024-47024 [HIGH] CWE-190 CVE-2024-47024: In vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds wr In vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-22416P3HIGHCVSS 7.8v13.0v14.0+4 more2025-09-02
CVE-2025-22416 [HIGH] CWE-441 CVE-2025-22416: In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a c In onCreate of ChooserActivity.java , there is a possible way to view other users' images due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2024-49744P3HIGHCVSS 7.8v12.0v12.1+8 more2025-01-21
CVE-2024-49744 [HIGH] CWE-276 CVE-2024-49744: In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to bypass In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to bypass parcel mismatch mitigation due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
nvd
CVE-2025-22420P3HIGHCVSS 7.8v13.0v14.0+6 more2025-12-08
CVE-2025-22420 [HIGH] CWE-441 CVE-2025-22420: In multiple locations, there is a possible way to leak audio files across user profiles due to a con In multiple locations, there is a possible way to leak audio files across user profiles due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-48597P3HIGHCVSS 7.8v14.0v15.0+4 more2025-12-08
CVE-2025-48597 [HIGH] CWE-1021 CVE-2025-48597: In multiple locations, there is a possible way to trick a user into accepting a permission due to a In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2017-13310P3HIGHCVSS 7.8v6.0v6.0.1+10 more2024-11-15
CVE-2017-13310 [HIGH] CWE-276 CVE-2017-13310: In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can start an activity with system privileges with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2017-13314P3HIGHCVSS 7.8v7.0v7.1.1+7 more2024-11-15
CVE-2017-13314 [HIGH] CWE-862 CVE-2017-13314: In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings by In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missing permission check. This could lead to local escalation of privilege allowing users to access non-VPN networks, when they are supposed to be restricted to the VPN networks, with no additional execution privileges needed. User interac
nvd
CVE-2024-47013P3HIGHCVSS 7.8vAndroid kernel2024-10-25
CVE-2024-47013 [HIGH] CWE-276 CVE-2024-47013: In pmucal_rae_handle_seq_int of flexpmu_cal_rae.c, there is a possible arbitrary write due to uninit In pmucal_rae_handle_seq_int of flexpmu_cal_rae.c, there is a possible arbitrary write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-28580P3HIGHCVSS 7.8v16.0v16.0-qpr2_beta_1+4 more2026-06-01
CVE-2026-28580 [HIGH] CWE-120 CVE-2026-28580: In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. T In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2026-0093P3HIGHCVSS 7.8v14.0v15.0+8 more2026-06-01
CVE-2026-0093 [HIGH] CWE-451 CVE-2026-0093: In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to loca In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2017-13312P3HIGHCVSS 7.8v8.0v82024-11-15
CVE-2017-13312 [HIGH] CWE-276 CVE-2017-13312: In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper input validation. This could lead to local escalation of privilege where an app can start an activity with system privileges with no additional execution privileges needed. User interaction is not needed for exploitation.
nvd
CVE-2025-20799P3HIGHCVSS 7.8v15.0v16.02026-01-06
CVE-2025-20799 [HIGH] CWE-416 CVE-2025-20799: In c2ps, there is a possible memory corruption due to use after free. This could lead to local escal In c2ps, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10274607; Issue ID: MSV-5049.
nvd
CVE-2025-20781P3HIGHCVSS 7.8v14.0v15.0+1 more2026-01-06
CVE-2025-20781 [HIGH] CWE-415 CVE-2025-20781: In display, there is a possible memory corruption due to use after free. This could lead to local es In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182914; Issue ID: MSV-4699.
nvd
Google Android vulnerabilities | cvebase