CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2025-48627

    Last Modified: 26 Feb 2026

    In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible way to launch an activity from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    9.8
    Critical

    CVE-2025-48626

    Last Modified: 26 Feb 2026

    In multiple locations, there is a possible way to launch an application from the background due to a precondition check failure. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48624

    Last Modified: 26 Feb 2026

    In multiple functions of arm-smmu-v3.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48623

    Last Modified: 26 Feb 2026

    In init_pkvm_hyp_vcpu of pkvm.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48622

    Last Modified: 17 Dec 2025

    In ProcessArea of dng_misc_opcodes.cpp, there is a possible out of bounds read due to a buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.3
    High

    CVE-2025-48621

    Last Modified: 17 Dec 2025

    In DefaultTransitionHandler.java, there is a possible way to enable a tapjacking attack due to a insecure default. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48620

    Last Modified: 26 Feb 2026

    In onSomePackagesChanged of VoiceInteractionManagerService.java, there is a possible way for a third party application's component name to persist even after uninstalling due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    6.8
    Medium

    CVE-2025-48618

    Last Modified: 17 Dec 2025

    In processLaunchBrowser of CommandParamsFactory.java, there is a possible browser interaction from the lockscreen due to improper locking. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48615

    Last Modified: 1 Jun 2026

    In getComponentName of MediaButtonReceiverHolder.java, there is a possible desync in persistence due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    4.6
    Medium

    CVE-2025-48614

    Last Modified: 17 Dec 2025

    In rebootWipeUserData of RecoverySystem.java, there is a possible way to factory reset the device while in DSU mode due to a missing permission check. This could lead to physical denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48612

    Last Modified: 1 Jun 2026

    In setDefaultKey of DefaultPaymentSettings.java, there is a possible way for an application to set the main user's default NFC payment setting due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48610

    Last Modified: 17 Dec 2025

    In __pkvm_guest_relinquish_to_host of mem_protect.c, there is a possible configuration data leak due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48607

    Last Modified: 17 Dec 2025

    In multiple locations, there is a possible way to create a large amount of app ops due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48604

    Last Modified: 17 Dec 2025

    In multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48603

    Last Modified: 17 Dec 2025

    In InputMethodInfo of InputMethodInfo.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48601

    Last Modified: 17 Dec 2025

    In multiple locations, there is a possible permanent denial of service due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48600

    Last Modified: 1 Jun 2026

    In multiple files, there is a possible way to reveal information across users due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48599

    Last Modified: 26 Feb 2026

    In multiple functions of WifiScanModeActivity.java, there is a possible way to bypass a device config restriction due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    6.6
    Medium

    CVE-2025-48598

    Last Modified: 17 Dec 2025

    In multiple locations, there is a possible way to alter the primary user's face unlock settings due to a confused deputy. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48597

    Last Modified: 26 Feb 2026

    In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48596

    Last Modified: 26 Feb 2026

    In appendFrom of Parcel.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.3
    High

    CVE-2025-48594

    Last Modified: 26 Feb 2026

    In onUidImportance of DisassociationProcessor.java, there is a possible way to retain companion application privileges after disassociation due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 8 Dec 2025
    7.5
    High

    CVE-2025-48592

    Last Modified: 17 Dec 2025

    In initDecoder of C2SoftDav1dDec.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48591

    Last Modified: 17 Dec 2025

    In multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48590

    Last Modified: 17 Dec 2025

    In verifyAndGetBypass of AppOpsService.java, there is a possible method for a malicious app to prevent dialing emergency services under limited circumstances due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48589

    Last Modified: 26 Feb 2026

    In multiple functions of HeaderPrivacyIconsController.kt, there is a possible way to grand permissions across user due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48588

    Last Modified: 26 Feb 2026

    In startAlwaysOnVpn of Vpn.java, there is a possible way to disable always-on VPN due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48586

    Last Modified: 26 Feb 2026

    In onActivityResult of EditFdnContactScreen.java, there is a possible way to leak contacts from the work profile due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48584

    Last Modified: 17 Dec 2025

    In multiple functions of NotificationManagerService.java, there is a possible way to bypass the per-package channel limits causing resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48583

    Last Modified: 26 Feb 2026

    In multiple functions of BaseBundle.java, there is a possible way to execute arbitrary code due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48580

    Last Modified: 26 Feb 2026

    In connectInternal of MediaBrowser.java, there is a possible way to access while in use permission while the app is in background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-48576

    Last Modified: 17 Dec 2025

    In updateNotificationChannelGroupFromPrivilegedListener of NotificationManagerService.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48575

    Last Modified: 26 Feb 2026

    In multiple functions of CertInstaller.java, there is a possible way to install certificates due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48573

    Last Modified: 26 Feb 2026

    In sendCommand of MediaSessionRecord.java, there is a possible way to launch the foreground service while the app is in the background due to FGS while-in-use abuse. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48572

    Last Modified: 26 Feb 2026

    In multiple locations, there is a possible way to launch activities from the background due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48566

    Last Modified: 8 Sept 2026

    In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48565

    Last Modified: 8 Sept 2026

    In multiple locations, there is a possible way to bypass the cross profile intent filter due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7
    High

    CVE-2025-48564

    Last Modified: 8 Sept 2026

    In multiple locations, there is a possible intent filter bypass due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48555

    Last Modified: 26 Feb 2026

    In multiple functions of NotificationStation.java, there is a possible cross-profile information disclosure due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48536

    Last Modified: 26 Feb 2026

    In grantAllowlistedPackagePermissions of SettingsSliceProvider.java, there is a possible way for a third party app to modify secure settings due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-48525

    Last Modified: 26 Feb 2026

    In disassociate of DisassociationProcessor.java, there is a possible way for an app to continue reading notifications when not associated to a companion device due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-32329

    Last Modified: 26 Feb 2026

    In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-32328

    Last Modified: 26 Feb 2026

    In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    6.7
    Medium

    CVE-2025-32319

    Last Modified: 26 Feb 2026

    In ensureBound of RemotePrintService.java, there is a possible way for a background app to keep foreground permissions due to a permissions bypass. This could lead to local escalation of privilege with user execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    6.7
    Medium

    CVE-2025-22432

    Last Modified: 26 Feb 2026

    In notifyTimeout of CallRedirectionProcessor.java, there is a possible persistent connection due to improper input validation. This could lead to local escalation of privilege and background activity launches with User execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    7.8
    High

    CVE-2025-22420

    Last Modified: 26 Feb 2026

    In multiple locations, there is a possible way to leak audio files across user profiles due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-14256

    Last Modified: 9 Dec 2025

    A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an unknown function of the file /newcurriculm.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit is now public and may be used.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-14251

    Last Modified: 9 Dec 2025

    A security vulnerability has been detected in code-projects Online Ordering System 1.0. This affects an unknown function of the file /admin/ of the component Admin Login. Such manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.

    Published: 8 Dec 2025
    5.5
    Medium

    CVE-2025-14250

    Last Modified: 10 Dec 2025

    A weakness has been identified in code-projects Online Ordering System 1.0. The impacted element is an unknown function of the file /user_contact.php. This manipulation of the argument Name causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.

    Published: 8 Dec 2025
    Unknown

    CVE-2025-14271

    Last Modified: 8 Dec 2025

    This CVE ID has been withdrawn by its CVE Numbering Authority.

    Published: 8 Dec 2025