Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2026-0087

CVE-2026-0087_CVE-2026-0087

In approvalLevelForDomainInternal of DomainVerificationService.java, there is a possible way to hijack an arbitrary app link due to a logic error i...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2026-0078

CVE-2026-0078_CVE-2026-0078

In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync in persistence due to improper input validation. This could lead t...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2026-0076

CVE-2026-0076_CVE-2026-0076

In validateNode of ResourceTypes.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local escalation ...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2026-0045

CVE-2026-0045_CVE-2026-0045

In bta_jv_rfcomm_connect of bta_jv_act.cc, there is a possible bypass of bonding for a secure connection due to a logic error in the code. This cou...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2026-0036

CVE-2026-0036_CVE-2026-0036

In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escal...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2025-48652

CVE-2025-48652_CVE-2025-48652

In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead ...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2025-48649

CVE-2025-48649_CVE-2025-48649

In multiple locations, there is a possible way to reset user-selected permissions selections due to a permissions bypass. This could lead to local ...

Google Android 16-qpr2 CVE
HIGH 7.8 CVE-2025-48570

CVE-2025-48570_CVE-2025-48570

In multiple functions of PipTaskOrganizer.java, there is a possible way to launch an activity from the background due to a confused deputy. This co...

Google Android 14 CVE
HIGH 7.8 CVE-2025-32348

CVE-2025-32348_CVE-2025-32348

In multiple locations, there is a possible background activity launch due to a missing permission check. This could lead to local escalation of pri...

Google Android 16-qpr2 CVE
HIGH 7.5 CVE-2026-42670

WordPress Five Star Restaurant Reservations plugin <= 2.7.14 - Payment Bypass vulnerability_CVE-2026-42670

Missing Authorization vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations allows Exploiting Incorrectly Configured Ac...

Etoile Web Design Incorporated Five Star Restaurant Reservations n/a CVE