Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.4 HIGH
CVE-2025-48574 — Google Chrome Drag-and-Drop Privilege Escalation

In validateAddingWindowLw of DisplayPolicy.java, there is a possible way for an app to intercept drag-and-drop events due to a missing permission check. This could lead to local escalation of privile…

android | Authorization
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
7.4 HIGH
CVE-2025-48568 — Samsung Galaxy Lockscreen Bypass Vulnerability

In multiple locations, there is a possible lockscreen bypass due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction…

android | Race Condition
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
7.8 HIGH
CVE-2025-48567 — Apache HTTP Server Unicode Normalization Privilege Escalation Vulnerability

In multiple locations, there is a possible bypass of a file path filter designed to prevent access to sensitive directories due to incorrect unicode normalization. This could lead to local escalatio…

android | Path Traversal
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
8.4 HIGH
CVE-2025-32313 — Apache Software Java Out-of-Bounds Write Vulnerability

In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges …

android | Memory Corruption
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
6.5 MEDIUM
CVE-2024-43766 — "Bluetoothy Bluetooth Information Disclosure Vulnerability"

In multiple functions of btm_ble_sec.cc, there is a possible unencrypted communication due to Invalid error handling. This could lead to remote (proximal/adjacent) information disclosure with no addi…

android | Cryptography
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
8.8 HIGH
CVE-2024-31328 — Android BroadcastController arbitrary activity launch vulnerability

In broadcastIntentLockedTraced of BroadcastController.java, there is a possible way to launch arbitrary activities from the background on the paired companion phone due to a logic error in the code. …

android | Authentication
Mar 02, 2026 Mar 06, 2026
Mar 02, 2026
Mar 06, 2026
Showing 20 of 6246 Results