Search
31,862 CVEs
CVEs (31,862, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 276–300 of 31,862 (capped at 500)
| CVE ID | Severity ↓ | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-28657 | NONE | — | 2026-09-08 | In onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy. This could lead to local escalatio… | |
| CVE-2026-28658 | NONE | — | 2026-09-08 | In findMetaAuthUid of AccountsDb.java, there is a possible frp bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional … | |
| CVE-2026-28660 | NONE | — | 2026-09-08 | In getAllSessions of multiple files, there is a possible confused deputy due to a logic error in the code. This could lead to local information disclosure with no additiona… | |
| CVE-2026-28662 | NONE | — | 2026-09-08 | In p2p_process_prov_disc_bootstrap_req of p2p_pd.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) cod… | |
| CVE-2026-28663 | NONE | — | 2026-09-08 | In buildIntentSenderForUser of LauncherAppsService.java, there is a possible way to launch an activity from the background due to BAL Bypass. This could lead to local escal… | |
| CVE-2026-28666 | NONE | — | 2026-09-08 | In multiple functions of LocalImageResolver.java, there is a possible Remote Persistent Denial of Service due to a DNG image rendering check bypass. This could lead to remo… | |
| CVE-2026-28668 | NONE | — | 2026-09-08 | In LimitRealloc of malloc_limit.cpp, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additiona… | |
| CVE-2026-28634 | NONE | — | 2026-09-08 | In handleUssdRequest of PhoneInterfaceManager.java, there is a possible way to send a USSD request without permission due to a logic error in the code. This could lead to l… | |
| CVE-2026-28636 | NONE | — | 2026-09-08 | In setupLayout of PickActivity.java, there is a possible bypass of the "Install unknown apps" security restriction due to a confused deputy. This could lead to local escala… | |
| CVE-2026-28638 | NONE | — | 2026-09-08 | In multiple functions of XmpDataParser.java, there is a possible improper data sanitization due to a logic error in the code. This could lead to local information disclosur… | |
| CVE-2026-28639 | NONE | — | 2026-09-08 | In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no ad… | |
| CVE-2026-28642 | NONE | — | 2026-09-08 | In executeRequest of ActivityStarter.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege… | |
| CVE-2026-28644 | NONE | — | 2026-09-08 | In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of priv… | |
| CVE-2026-28650 | NONE | — | 2026-09-08 | In setHiddenWhileSuspended of WindowState.java, there is a possible overlay bypass due to a logic error in the code. This could lead to local escalation of privilege with n… | |
| CVE-2026-28652 | NONE | — | 2026-09-08 | In multiple functions of RangingServiceImpl.java, there is a possible MITM due to a missing permission check. This could lead to remote information disclosure with no addit… | |
| CVE-2026-28653 | NONE | — | 2026-09-08 | In multiple functions of rw_t3t.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional … | |
| CVE-2026-28655 | NONE | — | 2026-09-08 | In multiple functions of RemoteViews.java, there is a possible background activity launch bypass due to a logic error in the code. This could lead to local escalation of pr… | |
| CVE-2026-28620 | NONE | — | 2026-09-08 | In multiple locations, there is a possible unauthorized URI access due to a permissions bypass. This could lead to local escalation of privilege with no additional executio… | |
| CVE-2026-28622 | NONE | — | 2026-09-08 | In getQueryBuilderInternal of MediaProvider.java, there is a possible way to retrieve location metadata due to a permissions bypass. This could lead to local information di… | |
| CVE-2026-28623 | NONE | — | 2026-09-08 | In writeToParcel of BleRssiRangingCapabilities.java, there is a possible way to obtain the Bluetooth MAC address due to a missing permission check. This could lead to local… | |
| CVE-2026-28624 | NONE | — | 2026-09-08 | In multiple locations, there is a possible read/write access to files without the proper permissions due to a confused deputy. This could lead to local escalation of privil… | |
| CVE-2026-28626 | NONE | — | 2026-09-08 | In onCreate of SetupPassthroughActivity.java, there is a possible way to launch arbitrary activity due to Intent redirection . This could lead to local escalation of privil… | |
| CVE-2026-28627 | NONE | — | 2026-09-08 | In btm_sec_encrypt_change of btm_sec.cc, there is a possible downgrade attack due to a logic error in the code. This could lead to remote information disclosure with no add… | |
| CVE-2026-28630 | NONE | — | 2026-09-08 | In onCreate of ContactsPickerActivity.kt, there is a possible misleading UI due to a tapjacking/overlay attack. This could lead to local information disclosure with no addi… | |
| CVE-2026-28631 | NONE | — | 2026-09-08 | In buildMiniResolver of IntentForwarderActivity.java, there is a possible consent bypass due to a tapjacking/overlay attack. This could lead to local escalation of privileg… |