16,977 known vulnerabilities
Top Products
In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to s
In LocaleManager, there is a possible way to determine whether an app is installed, without query permissions, due to si
In Messaging, there is a possible way to attach files to a message without proper access checks due to improper input va
In LocaleManager, there is a possible way to determine whether an app is installed, without query permissions, due to si
In Settings, there is a possible way to connect to an open network bypassing DISALLOW_CONFIG_WIFI restriction due to a l
In Media, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information di
In WindowManager, there is a possible bypass of the restrictions for starting activities from the background due to an i
In WindowManager, there is a possible method to create a recording of the lock screen due to an insecure default value.
In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation
In Core Utilities, there is a possible log information disclosure. This could lead to local information disclosure of se
In Telephony, there is a possible way to determine whether an app is installed, without query permissions, due to side c
In Messaging, there is a possible way to attach a private file to an SMS message due to improper input validation. This
In BuildDevIDResponse of miscdatabuilder.cpp, there is a possible out of bounds write due to a missing bounds check. Thi
In several functions of mali_gralloc_reference.cpp, there is a possible arbitrary code execution due to a missing bounds
In bdi_put and bdi_unregister of backing-dev.c, there is a possible memory corruption due to a use after free. This coul
In USB Manager, there is a possible way to determine whether an app is installed, without query permissions, due to side
In PackageManager, there is a possible way to get information about installed packages ignoring limitations introduced i
In Settings, there is a possible way to determine whether an app is installed without query permissions, due to side cha
In btif_dm_auth_cmpl_evt of btif_dm.cc, there is a possible vulnerability in Cross-Transport Key Derivation due to Weakn
In setChecked of SecureNfcPreferenceController.java, there is a missing permission check. This could lead to local escal
In startSync of AbstractThreadedSyncAdapter.java, there is a possible way to access protected content of content provide
In writeToParcel of SurfaceControl.cpp, there is a possible information disclosure due to uninitialized data. This could
In shouldAllowFgsWhileInUsePermissionLocked of ActiveServices.java, there is a possible way to start foreground service
In get of PacProxyService.java, there is a possible system service crash due to improper input validation. This could le
In onDefaultNetworkChanged of Vpn.java, there is a possible way to disable VPN due to a logic error in the code. This co
In onSaveRingtone of DefaultRingtonePreference.java, there is a possible inappropriate file read due to improper input v
In addProviderRequestListener of LocationManagerService.java, there is a possible way to learn which packages request lo
In onCreate of NotificationAccessConfirmationActivity.java, there is a possible way to trick the victim to grant notific
In WifiScanningPreferenceController and BluetoothScanningPreferenceController, there is a possible admin restriction byp
In updateState of LocationServicesWifiScanningPreferenceController.java, there is a possible admin restriction bypass du
In onAttach of ConnectedDeviceDashboardFragment.java, there is a possible permission bypass due to a confused deputy. Th
In updateAudioTrackInfoFromESDS_MPEG4Audio of MPEG4Extractor.cpp, there is a possible out of bounds read due to an incor
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds write due to a missing bounds check. This cou
In stealReceiveChannel of EventThread.cpp, there is a possible way to interfere with process communication due to a race
remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm
In Task.java, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation
Improper Privilege Management vulnerability in Game Optimizing Service prior to versions 3.3.04.0 in Android 10, and 3.5
Improper access control vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows local attackers to sc
Improper access control vulnerability in DesktopSystemUI prior to SMR Aug-2022 Release 1 allows attackers to enable and
Heap-based buffer overflow vulnerability in Samsung Dex for PC prior to SMR Aug-2022 Release 1 allows arbitrary code exe
Improper restriction of broadcasting Intent in ConfirmConnectActivity of?NFC prior to SMR Aug-2022 Release 1 leaks MAC a
Exposure of sensitive information in Bluetooth prior to SMR Aug-2022 Release 1 allows local attackers to access connecte
A vulnerable code in onCreate of SecDevicePickerDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the us
Unprotected dynamic receiver in Samsung Galaxy Friends prior to SMR Aug-2022 Release 1 allows attacker to launch activit
A vulnerability using PendingIntent in Knox VPN prior to SMR Aug-2022 Release 1 allows attackers to access content provi
Exposure of Sensitive Information in Samsung Dialer application?prior to SMR Aug-2022 Release 1 allows local attackers t
A vulnerable code in onCreate of BluetoothScanDialog prior to SMR Aug-2022 Release 1, allows attackers to trick the user
Implicit Intent hijacking vulnerability in Smart View prior to SMR Aug-2022 Release 1 allows attacker to access connecte
A vulnerability using PendingIntent in DeX for PC prior to SMR Aug-2022 Release 1 allows attackers to access files with
Improper authentication vulnerability in AppLock prior to SMR Aug-2022 Release 1 allows physical attacker to access Chro
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started