Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Google

16,977 known vulnerabilities

981
CRITICAL
5,879
HIGH
5,898
MEDIUM
447
LOW

Top Products

android 8109 chrome 4748 tensorflow 431 chrome os 215 asylo 16 blink 12 mcp toolbox for databases 9 linux and chrome os 8 gvisor 7 fuchsia 6
13,206 CVEs · Page 73/265
5.5
CVE-2024-44099

There is a possible Local bypass of user interaction due to an insecure default value. This could lead to local informat

7.4
CVE-2024-44098

In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free.

8.8
CVE-2024-10231

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru

8.8
CVE-2024-10230

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corru

8.1
CVE-2024-10229

Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass s

7.8
CVE-2024-9858

There exists an insecure default user permission in Google Cloud Migrate to containers from version 1.1.0 to 1.2.2 Windo

5.3
CVE-2024-9966

Inappropriate implementation in Navigations in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to bypass

8.8
CVE-2024-9965

Insufficient data validation in DevTools in Google Chrome on Windows prior to 130.0.6723.58 allowed a remote attacker wh

4.3
CVE-2024-9964

Inappropriate implementation in Payments in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced

4.3
CVE-2024-9963

Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convince

4.3
CVE-2024-9962

Inappropriate implementation in Permissions in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convin

8.8
CVE-2024-9961

Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced

7.5
CVE-2024-9960

Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap cor

8.8
CVE-2024-9959

Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had compromised the ren

4.3
CVE-2024-9958

Inappropriate implementation in PictureInPicture in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to pe

8.8
CVE-2024-9957

Use after free in UI in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to en

7.8
CVE-2024-9956

Inappropriate implementation in WebAuthentication in Google Chrome on Android prior to 130.0.6723.58 allowed a local att

8.8
CVE-2024-9955

Use after free in WebAuthentication in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exp

8.8
CVE-2024-9954

Use after free in AI in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corru

7.5
CVE-2024-8912

An HTTP Request Smuggling vulnerability in Looker allowed an unauthorized attacker to capture HTTP responses destined fo

8.8
CVE-2024-9859

Type confusion in WebAssembly in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to execute arbitrary co

6.2
CVE-2024-39440

In DRM service, there is a possible system crash due to null pointer dereference. This could lead to local denial of ser

6.2
CVE-2024-39439

In DRM service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o

6.5
CVE-2024-39438

In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l

6.5
CVE-2024-39437

In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l

6.5
CVE-2024-39436

In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l

8.8
CVE-2024-9603

Type Confusion in V8 in Google Chrome prior to 129.0.6668.100 allowed a remote attacker to potentially exploit heap corr

8.8
CVE-2024-9602

Type Confusion in V8 in Google Chrome prior to 129.0.6668.100 allowed a remote attacker to perform an out of bounds memo

4.1
CVE-2024-34664

Improper check for exception conditions in Knox Guard prior to SMR Oct-2024 Release 1 allows physical attackers to bypas

5.3
CVE-2024-34663

Integer overflow in libSEF.quram.so prior to SMR Oct-2024 Release 1 allows local attackers to write out-of-bounds memory

9.8
CVE-2024-20103

In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote co

4.9
CVE-2024-20102

In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to remote infor

9.8
CVE-2024-20101

In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to remote code

9.8
CVE-2024-20100

In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to remote code

6.7
CVE-2024-20099

In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

6.7
CVE-2024-20098

In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of

4.4
CVE-2024-20097

In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc

4.4
CVE-2024-20096

In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl

4.4
CVE-2024-20095

In m4u, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl

4.4
CVE-2024-20093

In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc

7.8
CVE-2024-20092

In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p

4.4
CVE-2024-20091

In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc

6.7
CVE-2024-20090

In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p

9.8
CVE-2024-44097

According to the researcher: "The TLS connections are encrypted against tampering or eavesdropping. However, the applica

6.5
CVE-2024-39435

In Logmanager service, there is a possible missing verification incorrect input. This could lead to local escalation of

6.2
CVE-2024-39434

In drm service, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of

6.2
CVE-2024-39433

In drm service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o

8.3
CVE-2024-39432

In UMTS RLC driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote deni

8.3
CVE-2024-39431

In UMTS RLC driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote den

8.8
CVE-2024-9123

Integer overflow in Skia in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform an out of bounds m

Frequently Asked Questions

How many CVEs affect Google?

Google has 16,977 CVE records in our database, including 1160 critical and 8152 high severity vulnerabilities. 94 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Google vulnerabilities?

Google has 1160 critical severity (CVSS 9.0+) and 8152 high severity (CVSS 7.0-8.9) vulnerabilities. 94 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Google vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Google products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Google Vulnerabilities

CyberStrike scans your infrastructure for Google vulnerabilities and provides real-time remediation guidance.

Get Started