Android

Android

Top 100 site
Bounty RecognitionPartial Safe Harbor

Known Exploited Vulnerabilities 16CVEs

  • CVE-2025-48633FrameworkDec 2, 20250.1% EPSS

    Android Framework contains an unspecified vulnerability that allows for information disclosure.

  • CVE-2025-48572FrameworkDec 2, 20250.2% EPSS

    Android Framework contains an unspecified vulnerability that allows for privilege escalation.

  • CVE-2025-48543RuntimeSep 4, 20250.3% EPSS

    Android Runtime contains a use-after-free vulnerability potentially allowing a chrome sandbox escape leading to local privilege escalation.

  • CVE-2024-43093FrameworkNov 7, 20240.2% EPSS

    Android Framework contains an unspecified vulnerability that allows for privilege escalation.

  • CVE-2024-36971KernelAug 7, 20240.4% EPSS

    Android contains an unspecified vulnerability in the kernel that allows for remote code execution. This vulnerability resides in Linux Kernel and could impact other products, including but not limited to Android OS.

  • CVE-2024-32896PixelJun 13, 20240.1% EPSS

    Android Pixel contains an unspecified vulnerability in the firmware that allows for privilege escalation.

  • CVE-2024-29748PixelApr 4, 20240.4% EPSS

    Android Pixel contains a privilege escalation vulnerability that allows an attacker to interrupt a factory reset triggered by a device admin app.

  • CVE-2024-29745PixelApr 4, 20240.2% EPSS

    Android Pixel contains an information disclosure vulnerability in the fastboot firmware used to support unlocking, flashing, and locking affected devices.

  • CVE-2023-21237PixelMar 5, 20240.7% EPSS

    Android Pixel contains a vulnerability in the Framework component, where the UI may be misleading or insufficient, providing a means to hide a foreground service notification. This could enable a local attacker to disclose sensitive information.

  • CVE-2023-35674FrameworkSep 13, 20230.1% EPSS

    Android Framework contains an unspecified vulnerability that allows for privilege escalation.

and 6 more - view full CISA catalog →

security.txt

Contact
https://g.co/vulnz, mailto:[email protected]
Encryption
https://services.google.com/corporate/publickey.txt
Policy
https://g.co/vrp
Hiring
https://g.co/SecurityPrivacyEngJobs
Acknowledgments
https://bughunters.google.com/
Expires
Apr 1, 2030
View raw security.txt →