16,977 known vulnerabilities
Top Products
In ffa_mrd_prot of shared_mem.c, there is a possible ID due to a logic error in the code. This could lead to local infor
In OEM_OnRequest of sced.cpp, there is a possible shell command execution due to improper input validation. This could l
In sms_SendMmCpErrMsg of sms_MmConManagement.c, there is a possible out of bounds write due to a heap buffer overflow. T
In Pixel cellular firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to re
In parseParamsBlob of types.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead
In parseTrackFragmentRun() of MPEG4Extractor.cpp, there is a possible out of bounds read due to an integer overflow. Thi
In validateForCommonR1andR2 of PasspointConfiguration.java, uncaught errors in parsing stored configs could lead to loca
In isBluetoothShareUri of BluetoothOppUtility.java, there is a possible incorrect file read due to a confused deputy. Th
Out of bounds read in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the r
Use after free in WebProtect in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit h
Out of bounds read in GPU Video in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploi
Use after free in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap c
Use after free in PDF in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap cor
Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially
Use after free in Passwords in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the r
Improper access control in Samsung Calendar prior to versions 12.4.02.9000 in Android 13 and 12.3.08.2000 in Android 12
Improper access control vulnerability in MyFiles application prior to versions 12.2.09.0 in Android 11, 13.1.03.501 in A
The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone servi
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit
In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system
In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system
In gpu device, there is a memory corruption due to a use after free. This could lead to local denial of service in kerne
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.
In wcn service, there is a possible missing params check. This could lead to local denial of service in wcn service.
Inappropriate implementation in Internals in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to spoof the
Type confusion in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the ren
Inappropriate implementation in Intents in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker to
Insufficient policy enforcement in Resource Timing in Google Chrome prior to 111.0.5563.64 allowed an attacker who convi
Insufficient policy enforcement in Resource Timing in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to
Inappropriate implementation in Autofill in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker to
Inappropriate implementation in WebApp Installs in Google Chrome on Android prior to 111.0.5563.64 allowed an attacker w
Inappropriate implementation in Permission prompts in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started