Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
25301
Total
1888
Critical
7733
High
7926
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-0052 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial … | Jun 01, 2026 |
| CVE-2026-0051 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a system crash due to improper input validation. This could lead to remote … | Jun 01, 2026 |
| CVE-2026-0050 | LOW | 3.3 | In handleBondStateChanged of AdapterService.java, there is a possible sensitive information disclosure due to a permissions bypass. This could lead to local information disclosure with no … | Jun 01, 2026 |
| CVE-2026-0048 | UNKNOWN | — | In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to … | Jun 01, 2026 |
| CVE-2026-0046 | UNKNOWN | — | In InputInterceptor of Letterbox.java, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead … | Jun 01, 2026 |
| CVE-2026-0045 | HIGH | 7.8 | In bta_jv_rfcomm_connect of bta_jv_act.cc, there is a possible bypass of bonding for a secure connection due to a logic error in the code. This could … | Jun 01, 2026 |
| CVE-2026-0044 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause the system to crash due to an integer overflow. This could lead to … | Jun 01, 2026 |
| CVE-2026-0043 | MEDIUM | 5.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to local escalation of … | Jun 01, 2026 |
| CVE-2026-0042 | MEDIUM | 5.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service … | Jun 01, 2026 |
| CVE-2026-0041 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible UBSan failure due to an integer overflow. This could lead to remote denial of service with … | Jun 01, 2026 |
| CVE-2026-0040 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial … | Jun 01, 2026 |
| CVE-2026-0039 | MEDIUM | 6.5 | In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of … | Jun 01, 2026 |
| CVE-2026-0036 | HIGH | 7.8 | In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no … | Jun 01, 2026 |
| CVE-2026-0018 | MEDIUM | 5.5 | In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of … | Jun 01, 2026 |
| CVE-2026-0016 | LOW | 3.3 | In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information … | Jun 01, 2026 |
| CVE-2026-0009 | MEDIUM | 6.2 | In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with … | Jun 01, 2026 |
| CVE-2025-48652 | HIGH | 7.8 | In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead to … | Jun 01, 2026 |
| CVE-2025-48649 | HIGH | 7.8 | In multiple locations, there is a possible way to reset user-selected permissions selections due to a permissions bypass. This could lead to local escalation of … | Jun 01, 2026 |
| CVE-2025-48648 | MEDIUM | 5.5 | In isSameApp of NotificationManagerService.java, there is a possible persistent dos due to resource exhaustion. This could lead to local denial of service with no additional … | Jun 01, 2026 |
| CVE-2025-48616 | LOW | 3.3 | In multiple functions of KeyguardViewMediator.java , there is a possible way to bypass lockdown mode with screen pinning due to a logic error in the … | Jun 01, 2026 |
| CVE-2025-48595 | HIGH | 8.4 | In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of privilege … | Jun 01, 2026 |
| CVE-2025-48570 | HIGH | 7.8 | In multiple functions of PipTaskOrganizer.java, there is a possible way to launch an activity from the background due to a confused deputy. This could lead … | Jun 01, 2026 |
| CVE-2025-32348 | HIGH | 7.8 | In multiple locations, there is a possible background activity launch due to a missing permission check. This could lead to local escalation of privilege with … | Jun 01, 2026 |
| CVE-2025-26418 | MEDIUM | 5.9 | In setUserDisclaimerAcknowledged of CarDevicePolicyService.java, there is a possible way to bypass the user dialog when adding an account to a managed device due to a … | Jun 01, 2026 |
| CVE-2025-22426 | MEDIUM | 5.9 | In many functions of ComputerEngine.java, there is a possible way to access URIs across users due to a logic error in the code. This could … | Jun 01, 2026 |