16,977 known vulnerabilities
Top Products
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, multiple T
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
In getNodeValue of USCCDMPlugin.java, there is a possible disclosure of ICCID due to a missing permission check. This co
Product: AndroidVersions: Android kernelAndroid ID: A-203213034References: N/A
In private_handle_t of mali_gralloc_buffer.h, there is a possible information disclosure due to uninitialized data. This
In ion_ioctl and related functions of ion.c, there is a possible use after free due to a race condition. This could lead
In (TBD) of (TBD), there is a possible way to decrypt local data encrypted by the GSC due to improperly used crypto. Thi
In CarSetings, there is a possible to pair BT device bypassing user's consent due to a missing permission check. This co
In onEntryUpdated of OngoingCallController.kt, it is possible to launch non-exported activities due to intent redirectio
In broadcastServiceStateChanged of TelephonyRegistry.java, there is a possible way to learn base station information wit
In placeCall of TelecomManager.java, there is a possible way for an application to keep itself running with foreground s
In mPreference of DefaultUsbConfigurationPreferenceController.java, there is a possible way to enable file transfer mode
In getAvailabilityStatus of PrivateDnsPreferenceController.java, there is a possible way for a guest user to change priv
In getArray of NotificationManagerService.java , there is a possible leak of one user notifications to another due to mi
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to an incorrect bounds check. This c
In various functions of the USB gadget subsystem, there is a possible out of bounds write due to a missing bounds check.
In mmc_blk_read_single of block.c, there is a possible way to read kernel heap memory due to uninitialized data. This co
In startActivityForAttachedApplicationIfNeeded of RootWindowContainer.java, there is a possible way to overlay an app th
In several functions of KeyguardServiceWrapper.java and related files,, there is a possible way to briefly view what's u
In validateApkInstallLocked of PackageInstallerSession.java, there is a way to force a mismatch between running code and
In checkSlicePermission of SliceManagerService.java, it is possible to access any slice URI due to improper input valida
In the policies of adbd.te, there was a logic error which caused the CTS Listening Ports Test to report invalid results.
In setStream of WallpaperManager.java, there is a possible way to cause a permanent DoS due to improper input validation
In ion, there is a possible use after free due to an integer overflow. This could lead to local escalation of privilege
In ion, there is a possible use after free due to incorrect error handling. This could lead to local escalation of privi
In voice service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local
In subtitle service, there is a possible application crash due to an integer overflow. This could lead to local denial o
In MM service, there is a possible out of bounds write due to a heap-based buffer overflow. This could lead to local esc
In MM service, there is a possible out of bounds write due to a stack-based buffer overflow. This could lead to local es
In aee daemon, there is a possible information disclosure due to improper access control. This could lead to local infor
In aee daemon, there is a possible information disclosure due to symbolic link following. This could lead to local infor
In aee daemon, there is a possible information disclosure due to a missing permission check. This could lead to local in
In aee daemon, there is a possible information disclosure due to a path traversal. This could lead to local information
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in wmfextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Improper buffer size check logic in aviextractor library prior to SMR May-2022 Release 1 allows out of bounds read leadi
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started