CVE Database

115314+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2025-26439
7.8 HIGH

In getComponentName of AccessibilitySettingsUtils.java, there is a possible way to for a malicious Talkback service to be enabled instead of the system component due to …

Sep 4, 2025
CVE-2025-26431
7.8 HIGH

In setupAccessibilityServices of AccessibilityFragment.java, there is a possible way to hide an enabled accessibility service due to a logic error in the code. This could …

Sep 4, 2025
CVE-2025-26419
3.3 LOW

In initPhoneSwitch of SystemSettingsFragment.java, there is a possible FRP bypass due to a logic error in the code. This could lead to local escalation of …

Sep 4, 2025
CVE-2025-22415
4.0 MEDIUM

In android_app of Android.bp, there is a possible way to launch any activity as a system user. This could lead to local escalation of privilege …

Sep 4, 2025
CVE-2025-22414
7.8 HIGH

In FrpBypassAlertActivity of FrpBypassAlertActivity.java, there is a possible way to bypass FRP due to a missing permission check. This could lead to local escalation of …

Sep 4, 2025
CVE-2024-49731
4.0 MEDIUM

In apk-versions.txt, there is a possible corruption of telemetry opt-in settings on other watches when setting up a new Pixel Watch due to a logic …

Sep 4, 2025
CVE-2024-40664
6.2 MEDIUM

In setupAccessibilityServices of AccessibilityFragment.java , there is a possible way to hide an enabled accessibility service due to a logic error in the code. This …

Sep 4, 2025
CVE-2025-48581
8.4 HIGH

In VerifyNoOverlapInSessions of apexd.cpp, there is a possible way to block security updates due to a logic error in the code. This could lead to …

Sep 4, 2025
CVE-2025-48563
7.8 HIGH

In onNullBinding of RemoteFillService.java, there is a possible background activity launch due to an insecure default value. This could lead to local escalation of privilege …

Sep 4, 2025
CVE-2025-48562
5.0 MEDIUM

In writeContent of RemotePrintDocument.java, there is a possible information disclosure due to a logic error. This could lead to local information disclosure with no additional …

Sep 4, 2025
CVE-2025-48561
5.5 MEDIUM

In multiple locations, there is a possible way to access data displayed on the screen due to side channel information disclosure. This could lead to …

Sep 4, 2025
CVE-2025-48560
5.5 MEDIUM

In AndroidManifest.xml, there is a possible way for an app to monitor motion events due to a confused deputy. This could lead to local information …

Sep 4, 2025
CVE-2025-48559
5.5 MEDIUM

In multiple functions of AppOpsService.java, there is a possible add a large amount of app ops due to improper input validation. This could lead to …

Sep 4, 2025
CVE-2025-48558
7.8 HIGH

In multiple functions of BatteryService.java, there is a possible way to hijack implicit intent intended for system app due to Implicit intent hijacking. This could …

Sep 4, 2025
CVE-2025-48556
7.3 HIGH

In multiple methods of NotificationChannel.java, there is a possible desynchronization from persistence due to improper input validation. This could lead to local escalation of privilege …

Sep 4, 2025
CVE-2025-48554
6.1 MEDIUM

In handlePackagesChanged of DevicePolicyManagerService.java, there is a possible persistent denial of service due to a logic error in the code. This could lead to local …

Sep 4, 2025
CVE-2025-48553
7.8 HIGH

In handlePackagesChanged of DevicePolicyManagerService.java, there is a possible DoS of a device admin due to a logic error in the code. This could lead to …

Sep 4, 2025
CVE-2025-48552
7.8 HIGH

In saveGlobalProxyLocked of DevicePolicyManagerService.java, there is a possible way to desync from persistence due to a logic error in the code. This could lead to …

Sep 4, 2025
CVE-2025-48551
5.0 MEDIUM

In multiple locations, there is a possible leak of an image across the Android User isolation boundary due to a confused deputy. This could lead …

Sep 4, 2025
CVE-2025-48550
5.5 MEDIUM

In testGrantSlicePermission of SliceManagerTest.java, there is a possible permanent denial of service due to a path traversal error. This could lead to local denial of …

Sep 4, 2025
CVE-2025-48549
7.8 HIGH

In multiple locations, there is a possible way to record audio via a background app due to a missing permission check. This could lead to …

Sep 4, 2025
CVE-2025-48548
7.3 HIGH

In multiple functions of AppOpsControllerImpl.java, there is a possible way to record audio without displaying the privacy indicator due to a race condition. This could …

Sep 4, 2025
CVE-2025-48547
7.3 HIGH

In multiple locations, there is a possible one-time permission bypass due to a logic error in the code. This could lead to local escalation of …

Sep 4, 2025
CVE-2025-48546
7.8 HIGH

In checkPermissions of SafeActivityOptions.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation …

Sep 4, 2025
CVE-2025-48545
7.1 HIGH

In isSystemUid of AccountManagerService.java, there is a possible way for an app to access privileged APIs due to a confused deputy. This could lead to …

Sep 4, 2025
CVE-2025-48544
7.8 HIGH

In multiple locations, there is a possible way to read files belonging to other apps due to SQL injection. This could lead to local escalation …

Sep 4, 2025
CVE-2025-48543
8.8 HIGH KEV

In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use after free. This could lead …

Sep 4, 2025
CVE-2025-48542
5.5 MEDIUM

In multiple functions of AccountManagerService.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service …

Sep 4, 2025
CVE-2025-48541
7.8 HIGH

In onCreate of FaceSettings.java, there is a possible way to remove biometric unlock across user profiles due to improper input validation. This could lead to …

Sep 4, 2025
CVE-2025-48540
7.8 HIGH

In processTransactInternal of RpcState.cpp, there is a possible local out of memory write due to a logic error in the code. This could lead to …

Sep 4, 2025
CVE-2025-48539
8.0 HIGH

In SendPacketToPeer of acl_arbiter.cc, there is a possible out of bounds read due to a use after free. This could lead to remote (proximal/adjacent) code …

Sep 4, 2025
CVE-2025-48538
5.5 MEDIUM

In setApplicationHiddenSettingAsUser of PackageManagerService.java, there is a possible way to hide a system critical package due to improper input validation. This could lead to local …

Sep 4, 2025
CVE-2025-48537
7.1 HIGH

In multiple locations, there is a possible way to persistently DoS the device due to improper input validation. This could lead to local information disclosure …

Sep 4, 2025
CVE-2025-48535
7.8 HIGH

In assertSafeToStartCustomActivity of AppRestrictionsFragment.java , there is a possible way to exploit a parcel mismatch resulting in a launch anywhere vulnerability due to unsafe deserialization. …

Sep 4, 2025
CVE-2025-48534
8.8 HIGH

In getDefaultCBRPackageName of CellBroadcastHandler.java, there is a possible escalation of privilege due to a logic error in the code. This could lead to local denial …

Sep 4, 2025
CVE-2025-48533
7.0 HIGH

In multiple locations, there is a possible way to use apps linked from a context menu of a lockscreen app due to a race condition. …

Sep 4, 2025
CVE-2025-48532
7.3 HIGH

In markMediaAsFavorite of MediaProvider.java, there is a possible way to bypass the WRITE_EXTERNAL_STORAGE permission due to a confused deputy. This could lead to local escalation …

Sep 4, 2025
CVE-2025-48531
7.8 HIGH

In getCallingPackageName of CredentialStorage, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of …

Sep 4, 2025
CVE-2025-48530
8.1 HIGH

In multiple locations, there is a possible condition that results in OOB accesses due to an incorrect bounds check. This could lead to remote code …

Sep 4, 2025
CVE-2025-48529
5.5 MEDIUM

In setRingtoneUri of VoicemailNotificationSettingsUtil.java , there is a possible cross user data leak due to a confused deputy. This could lead to local information disclosure …

Sep 4, 2025
CVE-2025-48528
4.0 MEDIUM

In multiple locations, there is a possible way to overlay biometrics due to a tapjacking/overlay attack. This could lead to local escalation of privilege with …

Sep 4, 2025
CVE-2025-48527
6.2 MEDIUM

In multiple locations, there is a possible way to leak hidden work profile notifications due to a logic error in the code. This could lead …

Sep 4, 2025
CVE-2025-48526
4.0 MEDIUM

In createMultiProfilePagerAdapter of ChooserActivity.java , there is a possible way for an app to launch the ChooserActivity in another profile due to improper input validation. …

Sep 4, 2025
CVE-2025-48524
5.5 MEDIUM

In isSystem of WifiPermissionsUtil.java, there is a possible permission bypass due to a missing permission check. This could lead to local denial of service with …

Sep 4, 2025
CVE-2025-48523
7.8 HIGH

In onCreate of SelectAccountActivity.java, there is a possible way to add contacts without permission due to a logic error in the code. This could lead …

Sep 4, 2025
CVE-2025-48522
7.8 HIGH

In setDisplayName of AssociationRequest.java, there is a possible way for an app to retain CDM association due to a logic error in the code. This …

Sep 4, 2025
CVE-2025-32350
7.8 HIGH

In maybeShowDialog of ControlsSettingsDialogManager.kt, there is a possible overlay of the ControlsSettingsDialog due to a tapjacking/overlay attack. This could lead to local escalation of privilege …

Sep 4, 2025
CVE-2025-32349
7.8 HIGH

In multiple locations, there is a possible privilege escalation due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional …

Sep 4, 2025
CVE-2025-32347
7.8 HIGH

In onStart of BiometricEnrollIntroduction.java, there is a possible way to determine the device's location due to an unsafe PendingIntent. This could lead to local escalation …

Sep 4, 2025
CVE-2025-32346
7.8 HIGH

In onActivityResult of VoicemailSettingsActivity.java, there is a possible work profile contact number leak due to a confused deputy. This could lead to local escalation of …

Sep 4, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.