CVE Vulnerability Database

Search and browse 397,819 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-0100HIGH7.8In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to loc...
CVE-2026-0099HIGH7.8In onNullBinding of HostEmulationManager.java, there is a possible way to launch an activity from the background due to ...
CVE-2026-0098HIGH7.8In getCallingPackageName of Shared.java, there is a possible way to bypass activity start restrictions due to a confused...
CVE-2026-0097HIGH8In multiple locations, there is a possible way to bypass user interaction when pairing an LE device due to a logic error...
CVE-2026-0096HIGH7.8In getAppLabel of ForgetDeviceDialogFragment.java, there is a possible trick the user into forgetting a device due to mi...
CVE-2026-0095HIGH8In l2c_fcr_clone_buf of l2c_fcr.cc, there is a possible way to trigger controlled heap corruption within the privileged ...
CVE-2026-0094HIGH7.8In getApplicationLabel of KeyChainActivity.java, there is a possible way to trick the user into approving access to cert...
CVE-2026-0093HIGH7.8In multiple locations, there is a possible misleading UI due to obfuscation. This could lead to local escalation of priv...
CVE-2026-0091HIGH7.8In multiple locations, there is a possible way to execute code in the launcher process due to an over-privileged shell u...
CVE-2026-0089HIGH7.8In multiple functions of PackageInstallerService.java, there is a possible way to install unverified apps due to a missi...
CVE-2026-0088HIGH7.8In getCallingAppLabel of CertInstaller.java, there is a possible way to hide a sensitive security dialogue due to mislea...
CVE-2026-0087HIGH7.8In approvalLevelForDomainInternal of DomainVerificationService.java, there is a possible way to hijack an arbitrary app ...
CVE-2026-0086MEDIUM6.8In onCreate of DisableSupervisionActivity.kt, there is a possible way to delete supervision data due to a missing null c...
CVE-2026-0085MEDIUM5.5In applySimpleFieldMaxSize of DataRowHandler.java, there is a possible way to insert a large contact name due to imprope...
CVE-2026-0080MEDIUM6.5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow...
CVE-2026-0079MEDIUM5.5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer ...
CVE-2026-0078HIGH7.8In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync in persistence due to improper input va...
CVE-2026-0077HIGH7.8In resumeConfigurationDispatch of ActivityRecord.java, there is a possible background application launch (bal) due to a ...
CVE-2026-0076HIGH7.8In validateNode of ResourceTypes.cpp, there is a possible out of bounds read due to an incorrect bounds check. This coul...
CVE-2026-0075MEDIUM5.9In multiple functions, there is a possible way to access the contacts database due to a SQL injection. This could lead t...
CVE-2026-0074MEDIUM5.5In getPreferredSize of LauncherProcessImageListener.kt, there is a possible denial of service due to resource exhaustio...
CVE-2026-0070MEDIUM5.5In multiple functions of DevicePolicyManagerService.java, there is a possible way to hide a system critical package due ...
CVE-2026-0069MEDIUM5.5In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could...
CVE-2026-0067MEDIUM5.5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a permanent denial of service due ...
CVE-2026-0061MEDIUM5.9In multiple functions of WindowState.java, there is a possible way to trick a user into accepting a permission due to a ...