Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

80,425 CVEs

CVEs (80,425, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 276–300 of 80,425 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-28657 NONE — 2026-09-08 In onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy. This could lead to local escalatio…
CVE-2026-28658 NONE — 2026-09-08 In findMetaAuthUid of AccountsDb.java, there is a possible frp bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional …
CVE-2026-28660 NONE — 2026-09-08 In getAllSessions of multiple files, there is a possible confused deputy due to a logic error in the code. This could lead to local information disclosure with no additiona…
CVE-2026-28662 NONE — 2026-09-08 In p2p_process_prov_disc_bootstrap_req of p2p_pd.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) cod…
CVE-2026-28663 NONE — 2026-09-08 In buildIntentSenderForUser of LauncherAppsService.java, there is a possible way to launch an activity from the background due to BAL Bypass. This could lead to local escal…
CVE-2026-28666 NONE — 2026-09-08 In multiple functions of LocalImageResolver.java, there is a possible Remote Persistent Denial of Service due to a DNG image rendering check bypass. This could lead to remo…
CVE-2026-28668 NONE — 2026-09-08 In LimitRealloc of malloc_limit.cpp, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additiona…
CVE-2026-28634 NONE — 2026-09-08 In handleUssdRequest of PhoneInterfaceManager.java, there is a possible way to send a USSD request without permission due to a logic error in the code. This could lead to l…
CVE-2026-28636 NONE — 2026-09-08 In setupLayout of PickActivity.java, there is a possible bypass of the "Install unknown apps" security restriction due to a confused deputy. This could lead to local escala…
CVE-2026-28638 NONE — 2026-09-08 In multiple functions of XmpDataParser.java, there is a possible improper data sanitization due to a logic error in the code. This could lead to local information disclosur…
CVE-2026-28639 NONE — 2026-09-08 In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no ad…
CVE-2026-28642 NONE — 2026-09-08 In executeRequest of ActivityStarter.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege…
CVE-2026-28644 NONE — 2026-09-08 In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of priv…
CVE-2026-28650 NONE — 2026-09-08 In setHiddenWhileSuspended of WindowState.java, there is a possible overlay bypass due to a logic error in the code. This could lead to local escalation of privilege with n…
CVE-2026-28652 NONE — 2026-09-08 In multiple functions of RangingServiceImpl.java, there is a possible MITM due to a missing permission check. This could lead to remote information disclosure with no addit…
CVE-2026-28653 NONE — 2026-09-08 In multiple functions of rw_t3t.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional …
CVE-2026-28655 NONE — 2026-09-08 In multiple functions of RemoteViews.java, there is a possible background activity launch bypass due to a logic error in the code. This could lead to local escalation of pr…
CVE-2026-28620 NONE — 2026-09-08 In multiple locations, there is a possible unauthorized URI access due to a permissions bypass. This could lead to local escalation of privilege with no additional executio…
CVE-2026-28622 NONE — 2026-09-08 In getQueryBuilderInternal of MediaProvider.java, there is a possible way to retrieve location metadata due to a permissions bypass. This could lead to local information di…
CVE-2026-28623 NONE — 2026-09-08 In writeToParcel of BleRssiRangingCapabilities.java, there is a possible way to obtain the Bluetooth MAC address due to a missing permission check. This could lead to local…
CVE-2026-28624 NONE — 2026-09-08 In multiple locations, there is a possible read/write access to files without the proper permissions due to a confused deputy. This could lead to local escalation of privil…
CVE-2026-28626 NONE — 2026-09-08 In onCreate of SetupPassthroughActivity.java, there is a possible way to launch arbitrary activity due to Intent redirection . This could lead to local escalation of privil…
CVE-2026-28627 NONE — 2026-09-08 In btm_sec_encrypt_change of btm_sec.cc, there is a possible downgrade attack due to a logic error in the code. This could lead to remote information disclosure with no add…
CVE-2026-28630 NONE — 2026-09-08 In onCreate of ContactsPickerActivity.kt, there is a possible misleading UI due to a tapjacking/overlay attack. This could lead to local information disclosure with no addi…
CVE-2026-28631 NONE — 2026-09-08 In buildMiniResolver of IntentForwarderActivity.java, there is a possible consent bypass due to a tapjacking/overlay attack. This could lead to local escalation of privileg…