16,977 known vulnerabilities
Top Products
In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This
In queryInternal of CallLogProvider.java, there is a possible permission bypass due to improper input validation. This c
In nci_proc_ee_management_rsp of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This
In writeBurstBufferBytes of SPDIFEncoder.cpp, there is a possible out of bounds read due to an incorrect bounds check. T
An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to eca
An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_
An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_
An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_
An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_
An out of bounds read on the enc_untrusted_inet_ntop function allows an attack to extend the result size that is used by
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to From
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to enc_
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allows an attacker to make a host call to Untr
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore fun
There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local information disclosure i
In the Broadcom Nexus firmware, there is an insecure default password. This could lead to local escalation of privilege
In extend_frame_highbd of restoration.c, there is a possible out of bounds write due to a heap buffer overflow. This cou
In addEscrowToken of LockSettingsService.java, there is a possible loss of the synthetic password due to logic error. Th
In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass of location permissi
In onUserStopped of Vpn.java, there is a possible resetting of user preferences due to a logic issue. This could lead to
In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This cou
In various methods of hid-multitouch.c, there is a possible out of bounds write due to a missing bounds check. This coul
In resolv_cache_lookup of res_cache.cpp, there is a possible side channel information disclosure. This could lead to loc
In sdp_server_handle_client_req of sdp_server.cc, there is a possible out of bounds read due to a missing bounds check.
In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly installed certificates d
In sendConfiguredNetworkChangedBroadcast of WifiConfigManager.java, there is a possible leak of sensitive WiFi configura
In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write
There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A
There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A
In audit_free_lsm_field of auditfilter.c, there is a possible bad kfree due to a logic error in audit_data_to_entry. Thi
In createVirtualDisplay of DisplayManagerService.java, there is a possible way to create a trusted virtual display due t
In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insecure default value. T
A temp directory creation vulnerability exists in all versions of Guava, allowing an attacker with access to the machine
In affected versions of TensorFlow running an LSTM/GRU model where the LSTM/GRU layer receives an input with zero-length
In TensorFlow release candidate versions 2.4.0rc*, the general implementation for matching filesystem paths to globbing
In affected versions of TensorFlow the tf.raw_ops.ImmutableConst operation returns a constant tensor created from a memo
In affected versions of TensorFlow the tf.raw_ops.DataFormatVecPermute API does not validate the src_format and dst_form
In affected versions of TensorFlow under certain cases a saved model can trigger use of uninitialized values during code
In affected versions of TensorFlow under certain cases, loading a saved model can result in accessing uninitialized memo
An information leak vulnerability exists in Gerrit versions prior to 2.14.22, 2.15.21, 2.16.25, 3.0.15, 3.1.10, 3.2.5 wh
An information leak vulnerability exists in Gerrit versions prior to 2.15.21, 2.16.25, 3.0.15, 3.1.10, 3.2.5 where a mis
If the Remote Debugging via USB feature was enabled in Firefox for Android on an Android version prior to Android 6.0, u
This affects the package @firebase/util before 0.3.4. This vulnerability relates to the deepExtend function within the D
In callCallbackForRequest of ConnectivityService.java, there is a possible permission bypass due to a missing permission
In updateNotification of BeamTransferManager.java, there is a possible permission bypass due to an unsafe PendingIntent.
In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could
In sbrDecoder_AssignQmfChannels2SbrChannels of sbrdecoder.cpp, there is a possible out of bounds write due to a heap buf
In rw_i93_sm_format of rw_i93.cc, there is a possible out of bounds read due to uninitialized data. This could lead to r
In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free. This could lead to
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started