Known Vulnerabilities for Android by Google
Listed below are 10 of the newest known vulnerabilities associated with "Android" by "Google".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102331 json | Buffer overflow in ANGLE in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker to potentially execu... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102327 json | Incorrect authorization in WebView in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker who had co... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102312 json | UI misrepresentation in Omnibox in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker to spoof addr... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102311 json | Uninitialized resource in GPU in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker who had comprom... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102307 json | Uninitialized resource in Dawn in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker to read memory... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102303 json | Uninitialized resource in GPU in Google Chrome on on Android prior to 154.0.8037.92 allowed a remote attacker to obtain cross... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-100823 json | Spoofing issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 157. | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-100620 json | Capgo CLI (npm package @capgo/cli) through 7.98.2 is affected by an over-permissioned service account in its Android onboardi... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100379 json | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation Wikipedia Android App allows... | Not Provided | 2026-09-25 | 2026-09-26 |
| CVE-2026-96587 json | The Viidure Android application embeds permanent, plaintext cloud storage credentials within its compiled code. These credent... | Not Provided | 2026-09-29 | 2026-09-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Android | 9.0 | ||||
| Operating System | Android | 8.1 | ||||
| Operating System | Android | 8.0 | ||||
| Operating System | Android | 7.1.2 | ||||
| Operating System | Android | 7.1.1 | ||||
| Operating System | Android | 7.1.0 | ||||
| Operating System | Android | 7.0 | ||||
| Operating System | Android | 6.0.1 | ||||
| Operating System | Android | 6.0 | ||||
| Operating System | Android | 5.1.1 | ||||
| Operating System | Android | 5.1.0 | ||||
| Operating System | Android | 5.1 | ||||
| Operating System | Android | 5.0.2 | ||||
| Operating System | Android | 5.0.1 | ||||
| Operating System | Android | 5.0 | ||||
| Operating System | Android | 4.4.4 | ||||
| Operating System | Android | 4.4.3 | ||||
| Operating System | Android | 4.4.2 | ||||
| Operating System | Android | 4.4.1 | ||||
| Operating System | Android | 4.4 |