Google vulnerabilities
79 CVEs tracked
In our reports, Google appears in a broad context spanning regulatory fines (EU DMA violation), new account recovery methods (selfie video sign-in), and AI-driven defense strategies ('Agentic Defense'). Mobile security is a key focus, specifically zero-click vulnerabilities targeting the Dolby decoding process on Pixel devices. Defenders should prioritize immediate patching against remote code execution risks related to CVE-2025-36934, CVE-2025-49415, CVE-2025-54957, and also address authentication/authorization flaws such as CVE-2026-14204 (Google Authenticator plugin) and CVE-2026-14537/14538 (mcp-toolbox).
Azərbaycanca: Hesabatlarımızda Google geniş spektrli kontekstdə görünür: tənzimləyici cərimələr (Aİ DMA qanun pozuntusu), istifadəçi hesabı bərpa üsulları (selfie video ilə giriş) və süni intellekt əsaslı müdafiə strategiyaları ('Agentic Defense'). Xüsusilə mobil təhlükəsizlik diqqət mərkəzindədir; Pixel cihazlarda Dolby dekodinq prosesini hədəfləyən sıfır klik (0-click) zəiflikləri vurğulanır. Müdafiəçilər CVE-2025-36934, CVE-2025-49415, CVE-2025-54957 ilə əlaqəli uzaqdan kod icrası risklərinə qarşı cihazların dərhal yenilənməsinə, həmçinin CVE-2026-14204 (Google Authenticator plaqini) və CVE-2026-14537/14538 (mcp-toolbox) kimi autentifikasiya və avtorizasiya zəifliklərinə diqqət etməlidir.
This vendor's CVEs60
- CVE-2026-22769KEVEPSS 13%
- CVE-2026-11645KEVEPSS 2%
- CVE-2025-8088KEVEPSS 95%
- CVE-2026-68499EPSS 0.13%
- CVE-2026-66902EPSS 0.44%
- CVE-2026-66901EPSS 0.34%
- CVE-2026-65599EPSS 0.15%
- CVE-2026-54785EPSS 0.15%
- CVE-2026-54730EPSS 0.37%
- CVE-2026-44187EPSS 0.13%
- CVE-2026-19560EPSS 0.39%
- CVE-2026-19559EPSS 0.39%
- CVE-2026-19558EPSS 0.24%
- CVE-2026-19557EPSS 0.30%
- CVE-2026-19556EPSS 0.39%
- CVE-2026-17684EPSS 0.49%
- CVE-2026-17683EPSS 0.45%
- CVE-2026-17682EPSS 0.49%
- CVE-2026-17681EPSS 0.56%
- CVE-2026-17680EPSS 0.53%
- CVE-2026-17679EPSS 0.45%
- CVE-2026-17678EPSS 0.49%
- CVE-2026-17677EPSS 0.48%
- CVE-2026-17676EPSS 0.48%
- CVE-2026-17675EPSS 0.41%
- CVE-2026-17674EPSS 0.41%
- CVE-2026-17673EPSS 0.48%
- CVE-2026-17672EPSS 0.48%
- CVE-2026-17671EPSS 0.48%
- CVE-2026-17670EPSS 0.48%
- CVE-2026-17669EPSS 0.49%
- CVE-2026-17668EPSS 0.49%
- CVE-2026-17667EPSS 0.49%
- CVE-2026-17666EPSS 0.24%
- CVE-2026-17665EPSS 0.57%
- CVE-2026-17664EPSS 0.55%
- CVE-2026-17663EPSS 0.47%
- CVE-2026-17662EPSS 0.33%
- CVE-2026-17661EPSS 0.56%
- CVE-2026-17660EPSS 0.47%
- CVE-2026-17659EPSS 0.32%
- CVE-2026-17658EPSS 0.57%
- CVE-2026-17657EPSS 0.44%
- CVE-2026-17656EPSS 0.53%
- CVE-2026-17655EPSS 0.53%
- CVE-2026-17654EPSS 0.19%
- CVE-2026-17653EPSS 0.46%
- CVE-2026-17652EPSS 0.51%
- CVE-2026-17651EPSS 0.53%
- CVE-2026-17650EPSS 0.48%
- CVE-2026-16807EPSS 0.43%
- CVE-2026-16806EPSS 0.39%
- CVE-2026-16805EPSS 0.39%
- CVE-2026-16804EPSS 0.42%
- CVE-2026-16636EPSS 0.31%
- CVE-2026-16424EPSS 0.28%
- CVE-2026-16423EPSS 0.26%
- CVE-2026-16422EPSS 0.15%
- CVE-2026-16421EPSS 0.33%
- CVE-2026-16420EPSS 0.36%
Showing the top 60 of 79 — known-exploited and newest first.
This hub is built from skopnix's own reporting on Google: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.