Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

4,828 CVEs affect a tracked app or OS (High, Android). 39 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
4,828
Actively exploited
39
Publication window
2016-05-09 → 2026-09-17

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

4,828 entries High Android Clear all
CVE
CVE-2025-32319
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-31718
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-31717
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-27074
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-27070
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-27054
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-27053
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-25177
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-22432
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-22420
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20792
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20791
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20790
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20759
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20758
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20757
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20756
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20754
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20753
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20752
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20751
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20750
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20730
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20727
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20726
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-20725
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-11133
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-11132
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-11131
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-35970
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40130
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48593
HIGH 8.0

In bta_hf_client_cb_init of bta_hf_client_main.cc, there is a possible remote code execution due to a use after free. This could lead to remote code execution …

CVE-2025-65018
HIGH · vendor

LIBPNG is vulnerable to a heap buffer overflow in `png_combine_row` triggered via `png_image_finish_read`

CVE-2025-64720
HIGH · vendor

LIBPNG is vulnerable to a buffer overflow in `png_image_read_composite` via incorrect palette premultiplication

CVE-2025-21488
HIGH 8.2

Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.

CVE-2025-21487
HIGH 8.2

Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

CVE-2025-21484
HIGH 8.2

Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

CVE-2025-21482
HIGH 7.1

Cryptographic issue while performing RSA PKCS padding decoding.

CVE-2025-48581
HIGH 8.4

In VerifyNoOverlapInSessions of apexd.cpp, there is a possible way to block security updates due to a logic error in the code. This could lead to local escalat…

CVE-2025-8109
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48563
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48562
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48560
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48559
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48558
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48556
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48554
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48553
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48552
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48551
HIGH · vendor

Indexed via Android Security Bulletin; full NVD metadata pending.

Manage your fleet with Appaloosa

Appaloosa pushes OS updates, apps and policies to your Windows, macOS, iOS and Android devices from one console.

Discover Appaloosa MDM