Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Android Number Of NVD 6904 CRITICAL 484 HIGH 3022 MEDIUM 3149 LOW 241
URL https://www.android.com/
Explanation It is an operating system installed on smartphones provided by Google.
Since it is open source, many manufacturers use it in their smartphones, tablets, and wearable devices.

The support period differs for each development vendor.
After Google provides a security patch, it is up to the vendor to provide the patch to the target devices.
Tag
  • Google
  • Apache License v2.0
  • GPL v2
  • LGPL 2.1+
  • Mobile

Add Information URL
No Type Name URL
1 https://en.wikipedia.org/wiki/Android_version_history
2 https://source.android.com/setup/start/licenses
3 https://source.android.com/security/bulletin/
4 https://developer.android.com/
5 https://developer.android.com/about/versions/
6 https://android-developers.googleblog.com/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
41 Android 14 14.1 Nov. 6, 2024 Aug. 7, 2024 0 3 1 0
42 Android 13 13.4 Aug. 7, 2023 Aug. 15, 2022 15 317 812 67
43 Android 12 12.4 Oct. 17, 2022 Oct. 4, 2020 43 479 1193 106
44 Android 11 11 Sept. 8, 2020 Sept. 8, 2020 58 636 1364 107
45 Android 10 10 Sept. 3, 2019 Sept. 3, 2019 103 680 1055 110
46 Android 9 9 Aug. 6, 2018 Aug. 6, 2018 112 463 331 35
47 Android 8 8.1.0 Dec. 5, 2017 Aug. 21, 2017 144 529 318 25
48 Android 7 7.1.2 April 4, 2017 Aug. 22, 2016 116 627 380 20
49 Android 6 6.0.1 Dec. 7, 2015 Oct. 5, 2015 109 734 397 20
50 Android 5 5.1.1 April 21, 2015 Nov. 12, 2014 67 661 317 16
51 Android 4 4.4.4 June 19, 2014 Oct. 18, 2011 53 577 271 16
52 Android 3 3.2.6 Feb. 1, 2012 Feb. 22, 2011 25 420 174 10
53 Android 2 2.2.3 Nov. 21, 2011 Oct. 26, 2009 25 424 181 12
54 Android 1 1.6 Sept. 15, 2009 Sept. 23, 2008 150 1594 2337 209
55 Android 9.0 9.0 109 441 323 34
56 Android 7.2 7.2 16 61 79 9
57 Android 12.1 12.1 15 229 224 23
58 Android 12.0l 12.0l 0 28 68 9
59 Android 12.0 12.0 43 447 1159 104
60 Android 11.0 11.0 58 636 1364 107
61 Android 10.0 10.0 103 680 1055 110
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
41 6.5
-
MEDIUM
Network
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause the system to crash due to an integer overflow. This could lead to remote denial of service with no additional ex… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0044 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:46
2026-06-2
Show GitHub Exploit DB Packet Storm
42 5.5
-
MEDIUM
Local
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to local escalation of privilege with no additional e… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0043 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:45
2026-06-2
Show GitHub Exploit DB Packet Storm
43 5.5
-
MEDIUM
Local
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional executi… CWE-400
 Uncontrolled Resource Consumption
CVE-2026-0042 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:45
2026-06-2
Show GitHub Exploit DB Packet Storm
44 6.5
-
MEDIUM
Network
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible UBSan failure due to an integer overflow. This could lead to remote denial of service with no additional execution privileges … CWE-190
 Integer Overflow or Wraparound
CVE-2026-0041 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:45
2026-06-2
Show GitHub Exploit DB Packet Storm
45 6.5
-
MEDIUM
Network
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial of service with no additional execution priv… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0040 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:44
2026-06-2
Show GitHub Exploit DB Packet Storm
46 6.5
-
MEDIUM
Network
In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of service with no additional execut… CWE-190
 Integer Overflow or Wraparound
CVE-2026-0039 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:44
2026-06-2
Show GitHub Exploit DB Packet Storm
47 7.8
-
HIGH
Local
In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution priv… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2026-0036 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 23:21
2026-06-2
Show GitHub Exploit DB Packet Storm
48 5.5
-
MEDIUM
Local
In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additi… CWE-20
 Improper Input Validation 
CVE-2026-0018 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:44
2026-06-2
Show GitHub Exploit DB Packet Storm
49 3.3
-
LOW
Local
In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information disc… CWE-269
 Improper Privilege Management
CVE-2026-0016 cpe:2.3:o:google:android:16.0:qpr2_beta_3
cpe:2.3:o:google:android:16.0:qpr2_beta_2
cpe:2.3:o:google:android:16.0…
2026-06-3 03:41
2026-06-2
Show GitHub Exploit DB Packet Storm
50 7.8
-
HIGH
Local
In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interacti… CWE-269
 Improper Privilege Management
CVE-2026-0009 cpe:2.3:o:google:android:16.0:-
cpe:2.3:o:google:android:15.0:*
2026-06-4 01:16
2026-06-2
Show GitHub Exploit DB Packet Storm