16,977 known vulnerabilities
Top Products
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no addi
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no addi
In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denia
In cp_dump driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denia
In dialer service, there is a possible missing permission check. This could lead to local escalation of privilege with n
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no a
In telephony service, there is a possible missing permission check. This could lead to local escalation of privilege wit
Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corr
Macrovideo v380pro v1.4.97 shares the device id and password when sharing the device.
Incorrect access control in luowice v3.5.18 allows attackers to access cloud source code information via modification fo
Inappropriate implementation in Extensions API in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced
Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a us
Insufficient data validation in Installer in Google Chrome on Windows prior to 114.0.5735.90 allowed a local attacker to
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who
Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who
Type Confusion in V8 in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corru
Type Confusion in V8 in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corru
Out of bounds memory access in Mojo in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exp
Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corr
Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corr
Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corr
Use after free in Extensions in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install
Out of bounds write in Swiftshader in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially expl
Inappropriate implementation in WebApp Installs in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinc
Use after free in Guest View in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to instal
Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corr
Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the re
Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potential
Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit h
In unflattenString8 of Sensor.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead
In registerReceiverWithFeature of ActivityManagerService.java, there is a possible way for isolated processes to registe
In verifyReplacingVersionCode of InstallPackageHelper.java, there is a possible way to downgrade system apps below syste
In AnalyzeMfcResp of NxpMfcReader.cc, there is a possible out of bounds read due to a missing bounds check. This could l
In several functions of PhoneAccountRegistrar.java, there is a possible way to prevent an access to emergency services d
In several functions of SnoozeHelper.java, there is a possible way to grant notifications access due to resource exhaust
In multiple places of AccessibilityService, there is a possible way to hide the app from the user due to a logic error i
In retrieveAppEntry of NotificationAccessDetails.java, there is a missing permission check. This could lead to local esc
In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to loca
In applySyncTransaction of WindowOrganizer.java, a missing permission check could lead to local information disclosure w
In registerPhoneAccount of PhoneAccountRegistrar.java, uncaught exceptions in parsing persisted user data could lead to
In __efi_rt_asm_wrapper of efi-rt-wrapper.S, there is a possible bypass of shadow stack protection due to a logic error
In pushDynamicShortcut of ShortcutPackage.java, there is a possible way to get the device into a boot loop due to resour
In onSetRuntimePermissionGrantStateByDeviceAdmin of AdminRestrictedPermissionsUtils.java, there is a possible way for th
In mnld, there is a possible leak of GPS location due to a missing permission check. This could lead to local informatio
In m4u, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of
In isp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of
In pqframework, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalatio
In pqframework, there is a possible out of bounds read due to a missing bounds check. This could lead to local informati
In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr
In vcu, there is a possible leak of dma buffer due to a race condition. This could lead to local information disclosure
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started