16,977 known vulnerabilities
Top Products
In manifest files of the SmartSpace package, there is a possible tapjacking vector due to a missing permission check. Th
In various functions in fscrypt_ice.c and related files in some implementations of f2fs encryption that use encryption h
In uvc_scan_chain_forward of uvc_driver.c, there is a possible linked list corruption due to an unusual root cause. This
In setInstallerPackageName of PackageManagerService.java, there is a missing permission check. This could lead to local
In showLimitedSimFunctionWarningNotification of NotificationMgr.java, there is a possible permission bypass due to an un
In getNotificationBuilder of CarrierServiceStateTracker.java, there is a possible permission bypass due to an unsafe Pen
In various places in Telephony, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to
In showNotification of EmergencyCallbackModeService.java, there is a possible permission bypass due to an unsafe Pending
In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure default value. This
In decrypt and decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds read due to a missing bounds check. Th
In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to
In applyPolicy of PackageManagerService.java, there is possible arbitrary command execution as System due to an unenforc
In the app zygote SE Policy, there is a possible permissions bypass. This could lead to local information disclosure wit
In createSaveNotification of RecordingService.java, there is a possible permission bypass due to an unsafe PendingIntent
In createEmergencyLocationUserNotification of GnssVisibilityControl.java, there is a possible permissions bypass due to
In onCreate of RequestPermissionActivity.java, there is a possible tapjacking vector due to an insecure default value. T
In Parse_insh of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead t
In Parse_art of eas_mdls.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to
In Parse_ins of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to re
In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exception. This could lead t
In Parse_wave of eas_mdls.c, there is a possible out of bounds write due to an integer overflow. This could lead to remo
In allocExcessBits of bitalloc.c, there is a possible out of bounds write due to an incorrect bounds check. This could l
In the Bluetooth service, there is a possible spoofing attack due to a logic error. This could lead to remote informatio
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID
In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible out of bounds write due to a heap buffer overflow
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID
There is a possible out of bounds write due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID
In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. BT manager allows attackers
An issue was discovered on LG mobile devices with Android OS 10 software. The lguicc software (for the LG Universal Inte
An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. Applications with sen
An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos and MediaTek chipsets) software. Unauthenticated
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseb
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The Quram image codec libra
<p>A spoofing vulnerability manifests in Microsoft Xamarin.Forms due to the default settings on Android WebView version
An issue was discovered on LG mobile devices with Android OS 4.4, 5.0, 5.1, 6.0, 7.0, 7.1, 8.0, 8.1, 9.0, and 10 softwar
An issue was discovered on LG mobile devices with Android OS 4.4, 5.0, 5.1, 6.0, 7.0, 7.1, 8.0, 8.1, 9.0, and 10 softwar
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. An application crash can
An issue was discovered on LG mobile devices with Android OS 9 and 10 software. LGTelephonyProvider allows a bypass of i
An issue was discovered on LG mobile devices with Android OS 9 and 10 software on the VZW network. lge_property allows p
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Local users can gain pri
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A service crash may occu
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9, and 10 software. The network_management servic
An issue was discovered on LG mobile devices with Android OS 10 software. MDMService does not properly restrict APK inst
An issue was discovered on Samsung mobile devices with Q(10.0) (Galaxy S20) software. Because HAL improperly checks vers
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The persona service allows
An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code
An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started