Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Google

16,977 known vulnerabilities

981
CRITICAL
5,879
HIGH
5,898
MEDIUM
447
LOW

Top Products

android 8109 chrome 4748 tensorflow 431 chrome os 215 asylo 16 blink 12 mcp toolbox for databases 9 linux and chrome os 8 gvisor 7 fuchsia 6
13,206 CVEs · Page 100/265
5.5
CVE-2023-21279

In visitUris of RemoteViews.java, there is a possible cross-user media read due to a confused deputy. This could lead to

3.3
CVE-2023-21278

In multiple locations, there is a possible way to obscure the microphone privacy indicator due to a logic error in the c

5.5
CVE-2023-21277

In visitUris of RemoteViews.java, there is a possible way to reveal images across users due to a missing permission chec

5.5
CVE-2023-21276

In writeToParcel of CursorWindow.cpp, there is a possible information disclosure due to uninitialized data. This could l

7.8
CVE-2023-21275

In decideCancelProvisioningDialog of AdminIntegratedFlowPrepareActivity.java, there is a possible way to bypass factory

5.5
CVE-2023-21274

In convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. Th

8.8
CVE-2023-21273

In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could l

7.8
CVE-2023-21272

In readFrom of Uri.java, there is a possible bad URI permission grant due to improper input validation. This could lead

5.5
CVE-2023-21271

In parseInputs of ShimPreparedModel.cpp, there is a possible out of bounds read due to improper input validation. This c

7.8
CVE-2023-21235

In onCreate of LockSettingsActivity.java, there is a possible way set a new lockscreen PIN without entering the existing

5.5
CVE-2023-21234

In launchConfirmationActivity of ChooseLockSettingsHelper.java, there is a possible way to enable developer options with

7.5
CVE-2023-21233

In multiple locations of avrc, there is a possible leak of heap data due to uninitialized data. This could lead to remot

3.3
CVE-2023-21232

In multiple locations, there is a possible way to retrieve sensor data without permissions due to a permissions bypass.

7.8
CVE-2023-21231

In getIntentForButton of ButtonManager.java, there is a possible way for an unprivileged application to start a non-expo

5.5
CVE-2023-21230

In onAccessPointChanged of AccessPointPreference.java, there is a possible way for unprivileged apps to receive a broadc

7.8
CVE-2023-21229

In registerServiceLocked of ManagedServices.java, there is a possible bypass of background activity launch restrictions

7.8
CVE-2023-21269

In startActivityInner of ActivityStarter.java, there is a possible way to launch an activity into PiP mode from the back

5.5
CVE-2023-21268

In update of MmsProvider.java, there is a possible way to change directory permissions due to a path traversal error. Th

5.5
CVE-2023-21267

In multiple functions of KeyguardViewMediator.java, there is a possible way to bypass lockdown mode with screen pinning

7.5
CVE-2023-21265

In multiple locations, there are root CA certificates which need to be disabled. This could lead to remote information d

6.7
CVE-2023-21264

In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check

9.8
CVE-2023-21242

In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to

6.8
CVE-2023-21140

In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a miss

6.8
CVE-2023-21134

In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a miss

6.8
CVE-2023-21133

In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a miss

6.8
CVE-2023-21132

In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a miss

9.8
CVE-2023-20965

In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic

4.4
CVE-2023-20818

In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local infor

6.7
CVE-2023-20817

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local esca

6.7
CVE-2023-20816

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local esca

6.7
CVE-2023-20815

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local esca

6.7
CVE-2023-20814

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to local esca

4.4
CVE-2023-20813

In wlan service, there is a possible out of bounds read due to improper input validation. This could lead to local infor

4.4
CVE-2023-20812

In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to local infor

6.7
CVE-2023-20811

In IOMMU, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

4.4
CVE-2023-20810

In IOMMU, there is a possible information disclosure due to improper input validation. This could lead to local informat

6.7
CVE-2023-20809

In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p

6.7
CVE-2023-20808

In OPTEE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.7
CVE-2023-20807

In dpe, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr

6.7
CVE-2023-20806

In hcp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr

6.7
CVE-2023-20805

In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.7
CVE-2023-20804

In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.5
CVE-2023-20803

In imgsys, there is a possible memory corruption due to improper input validation. This could lead to local escalation o

6.5
CVE-2023-20802

In imgsys, there is a possible memory corruption due to improper input validation. This could lead to local escalation o

6.4
CVE-2023-20801

In imgsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege

6.5
CVE-2023-20800

In imgsys, there is a possible system crash due to a mssing ptr check. This could lead to local escalation of privilege

4.4
CVE-2023-20798

In pda, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to local

6.7
CVE-2023-20797

In camera middleware, there is a possible out of bounds write due to a missing bounds check. This could lead to local es

4.4
CVE-2023-20796

In power, there is a possible memory corruption due to an incorrect bounds check. This could lead to local denial of ser

6.7
CVE-2023-20795

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr

Frequently Asked Questions

How many CVEs affect Google?

Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Google vulnerabilities?

Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Google vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Google Vulnerabilities

CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.

Get Started