16,977 known vulnerabilities
Top Products
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uniniti
In several functions of DescramblerImpl.cpp, there is a possible use after free due to improper locking. This could lead
In impeg2d_mc_fullx_fully of impeg2d_mc.c there is a possible out of bound write due to missing bounds check. This could
In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to b
In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type co
In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an app to keep permissions t
In ResStringPool::setTo of ResourceTypes.cpp, there is a possible out of bounds write due to a missing bounds check. Thi
In writeToParcel and createFromParcel of DcParamObject.java, there is a permission bypass due to a write size mismatch.
In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since
Firebase JavaScript SDK utilizes a "FIREBASE_DEFAULTS" cookie to store configuration data, including an "_authTokenSyncU
In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missin
In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible infinite loop leading to resou
In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper input validation. T
In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions
In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypas
In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This cou
In the autofill service, the package name that is provided by the app process is trusted inappropriately. This could le
In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prev
In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow. This could
In multiple locations, there is a possible cross-user image read due to a missing permission check. This could lead to l
In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission
In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to an
In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled access
In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a thir
In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocki
In visitUris of multiple files, there is a possible information disclosure due to a confused deputy. This could lead to
In validate of WifiConfigurationUtil.java , there is a possible persistent denial of service due to resource exhaustion.
In onActivityResult of EditUserPhotoController.java, there is a possible cross-user media read due to a confused deputy.
In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a lo
In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization.
In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a mi
In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a lo
In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This c
In multiple locations, there is a possible arbitrary code execution due to a logic error in the code. This could lead to
In multiple locations, there is a possible permissions bypass due to a missing null check. This could lead to local esca
In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This
In PMRWritePMPageList of pmr.c, there is a possible out of bounds write due to a logic error in the code. This could lea
In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This
In DevmemIntChangeSparse of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the
Inappropriate implementation in FileSystem in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass f
Inappropriate implementation in Blink in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced a
Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 131.0.6778.69 allowed a remote attacker t
Inappropriate implementation in Views in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker who h
Use after free in Accessibility in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who had compromised th
Use after free in Media in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker to potentially expl
Inappropriate implementation in Autofill in Google Chrome prior to 131.0.6778.69 allowed a remote attacker who convinced
Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass s
A vulnerability was found in Intelligent Apps Freenow App 12.10.0 on Android. It has been rated as problematic. Affected
There exists an auth bypass in Google Quickshare where an attacker can upload an unknown file type to a victim. The root
Frequently Asked Questions
How many CVEs affect Google?
Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.
What are the most severe Google vulnerabilities?
Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.
How can I scan for Google vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Google Vulnerabilities
CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.
Get Started