Search
80,425 CVEs
CVEs (80,425, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 301–325 of 80,425 (capped at 500)
| CVE ID | Severity ↓ | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-28633 | NONE | — | 2026-09-08 | In initForUserNoTracing of VoiceInteractionManagerService.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial… | |
| CVE-2026-28609 | NONE | — | 2026-09-08 | In read of MatroskaExtractor.cpp, there is a possible out-of-bounds write due to improper casting. This could lead to remote code execution with no additional execution pri… | |
| CVE-2026-28611 | NONE | — | 2026-09-08 | In multiple functions of NfcService.java, there is a possible silent payment session hijacking enablement due to a missing permission check. This could lead to local escala… | |
| CVE-2026-28612 | NONE | — | 2026-09-08 | In resolveActivity of ActivityStarter.java, there is a possible way to perform Intent Redirection attacks due to a logic error in the code. This could lead to local escalat… | |
| CVE-2026-28613 | NONE | — | 2026-09-08 | In initAppLinkTypeAndIntent of ChannelImpl.java, there is a possible launch an arbitrary intent due to improper input validation. This could lead to local escalation of pri… | |
| CVE-2026-28614 | NONE | — | 2026-09-08 | In onCreate of SlicePermissionActivity.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additi… | |
| CVE-2026-28616 | NONE | — | 2026-09-08 | In Setup Wizard, there is a possible way to force connection to a malicious network due to confused deputy. This could lead to local escalation of privilege with no additio… | |
| CVE-2026-28617 | NONE | — | 2026-09-08 | In add of WifiNetworkSuggestionsManager.java, there is a possible persistent DOS due to resource exhaustion. This could lead to local denial of service with no additional e… | |
| CVE-2026-28618 | NONE | — | 2026-09-08 | In dec_frm_prepare of oapv.c, there is a possible OOB write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges … | |
| CVE-2026-28593 | NONE | — | 2026-09-08 | In getItemList of SettingsFragment.java, there is a possible user interaction bypass due to misleading or insufficient UI. This could lead to local escalation of privilege … | |
| CVE-2026-28594 | NONE | — | 2026-09-08 | In multiple locations, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution pr… | |
| CVE-2026-28596 | NONE | — | 2026-09-08 | In parseInterventionFromXml of GameManagerService.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of servi… | |
| CVE-2026-28599 | NONE | — | 2026-09-08 | In addCreatorToken of ActivityManagerService.java, there is a possible Intent Redirection Bypass due to a logic error in the code. This could lead to local escalation of pr… | |
| CVE-2026-28600 | NONE | — | 2026-09-08 | In onCreate of PaymentDefaultDialog.java, there is a possible way to change default payment app due to a confused deputy. This could lead to local escalation of privilege w… | |
| CVE-2026-28602 | NONE | — | 2026-09-08 | In setClipboardAccessNotificationsEnabledForUser of ClipboardService.java, there is a possible mult-iuser isolation due to a logic error in the code. This could lead to loc… | |
| CVE-2026-28603 | NONE | — | 2026-09-08 | In assertSafeToStartCustomActivity of AppRestrictionsFragment.java, there is a possible read/write access to private files due to a confused deputy. This could lead to loca… | |
| CVE-2026-28604 | NONE | — | 2026-09-08 | In multiple locations, there is a possible use after free due to a race condition. This could lead to remote code execution with no additional execution privileges needed. … | |
| CVE-2026-28606 | NONE | — | 2026-09-08 | In handleBondStateChanged of AdapterService.java, there is a possible way to skip pairing due to a logic error in the code. This could lead to remote escalation of privileg… | |
| CVE-2026-28607 | NONE | — | 2026-09-08 | In multiple functions in multiple locations, there is a possible background activity launch bypass due to a confused deputy. This could lead to local escalation of privileg… | |
| CVE-2026-28572 | NONE | — | 2026-09-08 | In onCreate of InstallLaunch.kt, there is a possible misleading UI due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional e… | |
| CVE-2026-28582 | NONE | — | 2026-09-08 | In onCreate of ConfirmDeviceCredentialActivity.java, there is a possible unauthorized access to and modification of device credentials due to a missing permission check. Th… | |
| CVE-2026-28583 | NONE | — | 2026-09-08 | In validate_camera_metadata_structure of camera_metadata.c, there is a possible out of bounds write due to a logical error in the code. This could lead to local escalation … | |
| CVE-2026-28584 | NONE | — | 2026-09-08 | In createSessionInternal of PackageInstallerService.java, there is a possible way to permanently DoS the device due to a logic error in the code. This could lead to local d… | |
| CVE-2026-28590 | NONE | — | 2026-09-08 | In multiple locations, there is a possible improper encryption key validation due to a logic error in the code. This could lead to local escalation of privilege with no add… | |
| CVE-2026-0084 | NONE | — | 2026-09-08 | In multiple functions of HostEmulationManager.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of … |