| chromium-browser: angle: chromium-browser: arbitrary code execution via buffer overflow in ANGLE CVE-2026-102331 | Severity critical |
| chromium-browser: chromium-browser: Incorrect authorization in WebView CVE-2026-102327 | Severity high |
| chromium-browser: chromium-browser: UI misrepresentation in Omnibox CVE-2026-102312 | Severity medium |
| chromium-browser: chromium-browser: Uninitialized resource in GPU CVE-2026-102311 | Severity high |
| chromium-browser: chromium-browser: Uninitialized resource in Dawn CVE-2026-102307 | Severity high |
| chromium-browser: chromium-browser: Uninitialized resource in GPU CVE-2026-102303 | Severity medium |
| chromium-browser: Uninitialized resource in GPU CVE-2026-95359 | Severity medium |
| Incorrect authorization in Mobile in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker to bypass system access… CVE-2026-95358 | Severity medium |
| chromium-browser: Out of bounds write in GPU CVE-2026-95357 | Severity critical |
| chromium-browser: angle: Buffer overflow in ANGLE CVE-2026-95350 | Severity critical |
| Buffer overflow in WebGL in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary… CVE-2026-95349 | Severity critical |
| UI misrepresentation in Messages in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker leveraging social… CVE-2026-95337 | Severity medium |
| chromium-browser: Use of uninitialized variable in Tint CVE-2026-95332 | Severity medium |
| chromium-browser: Out of bounds write in WebGL CVE-2026-95329 | Severity critical |
| Confused deputy in Mobile in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker leveraging social engineering to… CVE-2026-95328 | Severity medium |
| Out of bounds write in GPU in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer… CVE-2026-95322 | Severity high |
| UI misrepresentation in Payments in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to spoof UI elements via a… CVE-2026-95321 | Severity medium |
| Incorrect authorization in WebAPKs in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker to obtain cross-origin… CVE-2026-95302 | Severity low |
| Missing authorization in WebView in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker who had compromised the… CVE-2026-95285 | Severity high |
| chromium-browser: angle: Buffer overflow in ANGLE CVE-2026-95284 | Severity critical |
| Buffer overflow in Tint in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to potentially execute arbitrary… CVE-2026-95283 | Severity critical |
| chromium-browser: angle: Buffer overflow in ANGLE CVE-2026-95281 | Severity critical |
| UI misrepresentation in Omnibox in Google Chrome on on Android prior to 154.0.8037.57 allowed a remote attacker to spoof address bar via a… CVE-2026-95279 | Severity medium |
| Server-side request forgery in Omnibox in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker leveraging social… CVE-2026-93384 | Severity low |
| Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to potentially execute arbitrary… CVE-2026-93374 | Severity critical |
| Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to execute arbitrary code outside… CVE-2026-93372 | Severity critical |
| chromium-browser: chromium-browser: Out of bounds read in WebGL CVE-2026-91726 | Severity high |
| chromium-browser: chromium-browser: Missing authorization in Android CVE-2026-91717 | Severity medium |
| Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary… CVE-2026-87643 | Severity critical |
| Out of bounds read in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the… CVE-2026-87640 | Severity medium |
| UI misrepresentation in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the… CVE-2026-87624 | Severity medium |
| Improper input validation in Safebrowsing in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social… CVE-2026-87600 | Severity medium |
| UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to spoof address bar via… CVE-2026-87597 | Severity medium |
| UI misrepresentation in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via… CVE-2026-87583 | Severity medium |
| chromium-browser: chromium-browser: Missing authorization in TrustedWebActivities CVE-2026-87552 | Severity medium |
| Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social… CVE-2026-87534 | Severity critical |
| Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social… CVE-2026-87522 | Severity medium |
| Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside… CVE-2026-87520 | Severity critical |
| Inappropriate implementation in Downloads in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social… CVE-2026-87503 | Severity medium |
| chromium-browser: chromium-browser: Use after free in WebGL CVE-2026-87488 | Severity critical |
| chromium-browser: chromium-browser: Clickjacking in TrustedWebActivities CVE-2026-87486 | Severity medium |
| chromium-browser: chromium-browser: Incorrect authorization in Browser CVE-2026-87483 | Severity medium |
| Incorrect authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the… CVE-2026-87481 | Severity high |
| Out of bounds write in WebGL in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code… CVE-2026-87438 | Severity critical |
| In multiple functions of iommu.c, there is a possible out of bounds read/write due to improper input validation. This could lead to local… CVE-2026-58941 | Severity high |
| In multiple functions of SmsController.java, there is a possible escalation of privilege due to a missing permission check. This could lead… CVE-2026-58874 | Severity high |
| In multiple functions of alloc.c, there is a possible unauthorized read/write access due to a race condition. This could lead to local… CVE-2026-58848 | Severity high |
| In kvm_iommu_map_sg of iommu.c, there is a possible use after free due to a missing permission check. This could lead to local escalation… CVE-2026-58846 | Severity high |
| In forEachLine of MountRegistry.cpp, there is a possible out of bounds read due to a buffer overflow. This could lead to local escalation… CVE-2026-58839 | Severity high |
| In stpropnci_process_std of stpropnci_std.cc, there is a possible memory safety issue due to a missing bounds check. This could lead to… CVE-2026-58823 | Severity high |
| In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting. This could lead to remote code… CVE-2026-58822 | Severity critical |
| In multiple locations, there is a possible memory safety issue due to integer overflow. This could lead to local escalation of privilege… CVE-2026-58820 | Severity high |
| In link_load_gnss_image of link_device.c, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local… CVE-2026-58773 | Severity medium |
| In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to… CVE-2026-58767 | Severity medium |
| In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to… CVE-2026-58766 | Severity high |
| In GPU, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with… CVE-2026-58765 | Severity medium |
| In smmu_install_nested_ste of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead… CVE-2026-58755 | Severity medium |
| In multiple functions of arm-smmu-v3.c, there is a possible use-after-free due to a logic error in the code. This could lead to local… CVE-2026-58751 | Severity medium |
| In smmu_detach_dev of arm-smmu-v3.c, there is a possible permission bypass due to a logic error in the code. This could lead to local… CVE-2026-58747 | Severity medium |
| In multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of… CVE-2026-58744 | Severity high |
| In platform_msg_handler_init of default_msg_handlers.c, there is a possible confused deputy due to a confused deputy. This could lead to… CVE-2026-58739 | Severity medium |
| In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race condition. This could lead to local… CVE-2026-58734 | Severity high |
| In multiple functions of physmem_extmem_linux.c, there is a possible out-of-bounds read due to uninitialized data. This could lead to local… CVE-2026-58731 | Severity medium |
| In ARM64_TLBI of mmu.h, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege… CVE-2026-58728 | Severity high |
| In FsmReleaseKey of fsm.c, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of… CVE-2026-58726 | Severity medium |
| In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with… CVE-2026-58724 | Severity high |
| In multiple locations, there is a possible information disclosure due to uninitialized memory use. This could lead to local information… CVE-2026-58721 | Severity medium |
| In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation. This could lead… CVE-2026-58718 | Severity medium |
| In multiple locations, there is a possible time-of-check to time-of-use due to a race condition. This could lead to local escalation of… CVE-2026-58716 | Severity medium |
| In DecodeFilmGrainParams of film_grain_dec.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to… CVE-2026-58710 | Severity high |
| Google Pixel Improper Authorization Vulnerability CVE-2026-58704 | Severity high Exploited yes |
| In trusty_dputc of generic-arm64-smcall.c, there is a possible out-of-bounds write due to a race condition. This could lead to local… CVE-2026-58701 | Severity high |
| In Vp9DecEndOfStream of vp9hwd_output.cc, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local… CVE-2026-58699 | Severity high |
| In ap_pmic_poll_msg_handler of ap_pmic_ipc.c, there is a possible permission bypass due to a confused deputy. This could lead to local… CVE-2026-58698 | Severity medium |
| In gmc_phy_lp3_exit_restore_registers of phy_power.c, there is a possible escalation of privilege due to a missing bounds check. This could… CVE-2026-58695 | Severity high |
| In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation. This could lead to local escalation of… CVE-2026-58691 | Severity high |
| In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code… CVE-2026-58683 | Severity high |
| In gf_ta_test_set_config of gf_ta_test.c, there is a possible heap buffer overflow due to a logic error in the code. This could lead to… CVE-2026-58679 | Severity high |
| In Bootloader, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege… CVE-2026-58678 | Severity high |
| In multiple functions of DreamPickerReceiver.kt, there is a possible permission bypass due to a confused deputy. This could lead to local… CVE-2026-57042 | Severity medium |
| In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of… CVE-2026-57035 | Severity medium |
| In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out-of-bounds write due to a missing bounds check. This… CVE-2026-57014 | Severity high |
| In the Setup Wizard, there is a possible remote package install due to a missing permission check. This could lead to remote escalation of… CVE-2026-57012 | Severity high |
| In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure… CVE-2026-57008 | Severity high |
| In acfw_ffa.c, there is a possible secret read due to a logic error in the code. This could lead to local information disclosure with… CVE-2026-57006 | Severity medium |
| In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote… CVE-2026-56997 | Severity high |
| In multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with… CVE-2026-56992 | Severity medium |
| In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of… CVE-2026-56989 | Severity medium |
| In multiple functions of bluetooth_cco.cc, there is a possible use-after-free due to a race condition. This could lead to local escalation… CVE-2026-56988 | Severity medium |
| In multiple files, there is a possible out-of-bounds read due to type confusion. This could lead to local escalation of privilege with no… CVE-2026-56986 | Severity high |
| In multiple files, there is a possible way to obtain signatures due to type confusion. This could lead to local escalation of privilege… CVE-2026-56985 | Severity high |
| In VPU, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with… CVE-2026-56982 | Severity high |
| In multiple locations, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of… CVE-2026-56979 | Severity medium |
| In get_global_config_item_addr of gc.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local… CVE-2026-56978 | Severity high |
| In Cellular Modem, there is a possible denial of service due to improper input validation. This could lead to remote (proximal/adjacent)… CVE-2026-56975 | Severity medium |
| In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation. This could lead to… CVE-2026-56974 | Severity high |
| In multiple locations, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of… CVE-2026-56973 | Severity medium |
| In multiple locations, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to local escalation of… CVE-2026-56972 | Severity medium |
| In multiple locations, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of… CVE-2026-56970 | Severity high |
| In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent)… CVE-2026-56967 | Severity high |