16,977 known vulnerabilities
Top Products
In OnMetadataChangedListener of AdvancedBluetoothDetailsHeaderController.java, there is a possible leak of Bluetooth MAC
In getDeviceId of PhoneSubInfoController.java, there is a possible way to determine whether an app is installed, without
In hasManageOngoingCallsPermission of TelecomServiceImpl.java, there is a possible way to determine whether an app is in
In getLaunchedFromUid and getLaunchedFromPackage of ActivityClientController.java, there is a possible way to determine
In getNeighboringCellInfo of PhoneInterfaceManager.java, there is a possible way to determine whether an app is installe
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owne
In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check.
In onNullBinding of ManagedServices.java, there is a possible permission bypass due to an incorrectly unbound service. T
In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about inst
In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due t
In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service w
In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the defau
In getSerialForPackage of DeviceIdentifiersPolicyService.java, there is a possible way to determine whether an app is in
In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check.
In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i
In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling
In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This
In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. Thi
In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to
In osi_malloc and osi_calloc of allocator.cc, there is a possible out of bounds write due to an integer overflow. This c
In vorbis_book_decodev_set of codebook.c, there is a possible out of bounds write due to a missing bounds check. This co
In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal u
In AndroidManifest.xml of Settings, there is a possible pairing of a Bluetooth device without user's consent due to a mi
In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This
In onCreate of KeyChainActivity.java, there is a possible way to use an app certificate stored in keychain due to a tapj
In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data. This could
In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code. Thi
In NfcTag::discoverTechnologies (activation) of NfcTag.cpp, there is a possible out of bounds write due to an incorrect
In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition. This could lead to local
In ResolverActivity, there is a possible user interaction bypass due to a tapjacking/overlay attack. This could lead to
In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmar
In doCropPhoto of PhotoSelectionHandler.java, there is a possible permission bypass due to a confused deputy. This could
In onCreate of CompanionDeviceActivity.java or DeviceChooserActivity.java, there is a possible way for HTML tags to inte
In showNotification of NavigationModeController.java, there is a possible confused deputy due to an unsafe PendingIntent
In getAlias of BluetoothDevice.java, there is a possible way to create misleading permission dialogs due to missing data
In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to a missing bounds ch
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use aft
In createFromParcel of OutputConfiguration.java, there is a possible parcel serialization/deserialization mismatch due t
In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in
In onCreate of NfcImportVCardActivity.java, there is a possible way to add a contact without user's consent due to a mis
In rw_t4t_sm_detect_ndef of rw_t4t.cc, there is a possible out of bounds read due to an incorrect bounds check. This cou
In xhci_vendor_get_ops of xhci.c, there is a possible out of bounds read due to a missing bounds check. This could lead
In createOrUpdate of Permission.java, there is a possible way to gain internal permissions due to a missing permission c
In enforceCrossUserOrProfilePermission of PackageManagerService.java, there is a possible bypass of INTERACT_ACROSS_PROF
In ParsingPackageImpl of ParsingPackageImpl.java, there is a possible parcel serialization/deserialization mismatch due
In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to loca
In getService of IServiceManager.cpp, there is a possible unhandled exception due to an integer overflow. This could lea
In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. This
In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escala
In Android TV , there is a possible silent pairing due to lack of rate limiting in the pairing flow. This could lead to
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started