Android

Vendor:

First CVE: Mar 4, 2021 · Active for 5 years

475
Total CVEs
More Total CVEs than 100% of tracked products
95.0
Avg CVEs / Year
Higher CVE frequency than 100% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 21% of tracked products
2.5%
KEV Rate
Higher KEV Rate than 96% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Android over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 4, 2021
5 years ago
Most Recent CVE
Jun 5, 2026
49 days ago

CVE Severity & Scoring

Android475 CVEs
All CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local370 (77.9%)
Network40 (8.4%)
Unknown0 (0.0%)
Physical56 (11.8%)
Adjacent Network9 (1.9%)
Attack Complexity
Low469 (98.7%)
High6 (1.3%)
Unknown0 (0.0%)
User Interaction
None425 (89.5%)
Unknown0 (0.0%)
Required50 (10.5%)
Privileges Required
Low304 (64.0%)
High45 (9.5%)
None126 (26.5%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (475 CVEs).

475 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Out-of-bounds write in libimagecodec.quram.so prior to SMR Apr-2025 Release 1 allows remote attackers to execute arbitrary code.
Sep 12, 20259.880YESNO
Out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code.
Sep 12, 20259.875YESNO
Lack of boundary checking of a buffer in set_skb_priv() of modem interface driver prior to SMR Oct-2021 Release 1 allows OOB read and it results in arbitrary code execution by dere
Oct 6, 20217.863YESNO
An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access.
Mar 26, 20216.760YESNO
Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files.
Mar 4, 20217.160YESNO
A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privilege is compromised.
Jun 11, 20216.458YESNO
A vulnerability in DSP driver prior to SMR Mar-2021 Release 1 allows attackers load arbitrary ELF libraries inside DSP.
Mar 26, 20216.758YESNO
A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is compromised.
Jun 11, 20216.457YESNO
An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
Mar 26, 20215.556YESNO
Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR.
May 4, 20234.455YESNO

Exploit Exposure

Signals from CVEs in this product scope (475 CVEs).

CISA KEV
12 CVEs
2.5% of CVEs· 96th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (475 CVEs).

Media Mentions

Signals from CVEs in this product scope (475 CVEs).

Top CNAs Publishing CVEs For Android

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.075.91.4%70
8.166.00.7%60
8.025.01.0%20
16.0706.10.1%10
15.01126.00.2%20
14.02656.00.2%20
13.03566.10.3%30
12.02676.20.2%10
11.01496.30.2%90
10.0185.80.3%90