Google vendor intelligence
Google Known Exploited Vulnerabilities
Track evidence-backed exploitation affecting Google products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.
- Total KEVs
- 90
- Known exploited vulnerabilities affecting Google products
- In CISA KEV
- 90
- Records also listed in the official catalog
- Beyond CISA KEV
- 0
- Additional exploited CVEs absent from CISA KEV
- Sensor Observed
- 0
- Google KEVs with sensor-observed exploitation activity
The catalog gap matters for Google exposure
All 90 exploited Google CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.
- 100%
- Covered by CISA
- 0%
- Beyond CISA
- 8
- Product families
Attested Google CVEs
Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.
How exploitation is verified| CVE / description | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2026-11645
Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox... |
Chrome | Confirmed | In CISA | 09 Jun 2026 |
|
CVE-2025-48595
In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of... |
Android | Confirmed | In CISA | 02 Jun 2026 |
|
CVE-2026-5281
Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to execute... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2026-3910
Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to execute arbitrary code inside a sandbox via... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2026-3909
Out of bounds write in Skia in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to perform out of bounds memory access via a crafted... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2026-2441
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-14174
Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-48633
In hasAccountsOnAnyUser of DevicePolicyManagerService.java, there is a possible way to add a Device Owner after provisioning due to a logic error... |
Android | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-48572
In multiple locations, there is a possible way to launch activities from the background due to a permissions bypass. This could lead to local... |
Android | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-13223
Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-10585
Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-48543
In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use after free. This could lead to... |
Android | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-6558
Insufficient validation of untrusted input in ANGLE and GPU in Google Chrome prior to 138.0.7204.157 allowed a remote attacker to potentially... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-6554
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page.... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2025-5419
Out of bounds read and write in V8 in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 01 Jun 2026 |
|
CVE-2021-30563
Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21220
Insufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21193
Use after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21224
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-38003
Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-38000
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21206
Use after free in Blink in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-30554
Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-6418
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-37975
Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-30551
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-37973
Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21148
Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a crafted... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-30633
Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-16013
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.198 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-30632
Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-16009
Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-37976
Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-16017
Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-21166
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-15999
Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-16010
Heap buffer overflow in UI in Google Chrome on Android prior to 86.0.4240.185 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2020-0041
In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of... |
Android | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2019-2215
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit... |
Android | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-4102
Use after free in V8 in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 15 Dec 2021 |
|
CVE-2020-6572
Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page. |
Chrome | Confirmed | In CISA | 10 Jan 2022 |
|
CVE-2022-0609
Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted... |
Chrome | Confirmed | In CISA | 15 Feb 2022 |
|
CVE-2022-1096
Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
Chrome | Confirmed | In CISA | 28 Mar 2022 |
|
CVE-2021-39793
In kbase_jd_user_buf_pin_pages of mali_kbase_mem.c, there is a possible out of bounds write due to a logic error in the code. This could lead to... |
Android | Confirmed | In CISA | 11 Apr 2022 |
|
CVE-2022-1364
Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 15 Apr 2022 |
|
CVE-2019-13720
Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted... |
Chrome | Confirmed | In CISA | 23 May 2022 |
|
CVE-2019-5786
Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access... |
Chrome | Confirmed | In CISA | 23 May 2022 |
|
CVE-2021-0920
In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege... |
Android | Confirmed | In CISA | 23 May 2022 |
|
CVE-2021-1048
In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of... |
Android | Confirmed | In CISA | 23 May 2022 |
|
CVE-2016-1646
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consider... |
Chrome | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2016-5198
V8 in Google Chrome prior to 54.0.2840.90 for Linux, and 54.0.2840.85 for Android, and 54.0.2840.87 for Windows and Mac included incorrect... |
Google Chrome prior to 54.0.2840.90 for Linux, and 54.0.2840.85 for Android, and 54.0.2840.87 for Windows and Mac | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2017-5030
Incorrect handling of complex species in V8 in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac and 57.0.2987.108 for Android... |
Google Chrome prior to 57.0.2987.98 for Linux, Windows and Mac, and 57.0.2987.108 for Android | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2017-5070
Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attacker to... |
Google Chrome prior to 59.0.3071.86 for Linux, Windows and Mac, and 59.0.3071.92 for Android | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2018-17463
Incorrect side effect annotation in V8 in Google Chrome prior to 70.0.3538.64 allowed a remote attacker to execute arbitrary code inside a sandbox... |
Chrome | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2018-17480
Execution of user supplied Javascript during array deserialization leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80... |
Chrome | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2018-6065
Integer overflow in computing the required allocation size when instantiating a new javascript object in V8 in Google Chrome prior to 65.0.3325.146... |
Chrome | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2019-5825
Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683.86 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 08 Jun 2022 |
|
CVE-2021-30533
Insufficient policy enforcement in PopupBlocker in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass navigation restrictions... |
Chrome | Confirmed | In CISA | 27 Jun 2022 |
|
CVE-2022-2856
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily... |
Chrome | Confirmed | In CISA | 18 Aug 2022 |
|
CVE-2022-2294
Heap buffer overflow in WebRTC in Google Chrome prior to 103.0.5060.114 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 25 Aug 2022 |
|
CVE-2011-1823
The vold volume manager daemon on Android 3.0 and 2.x before 2.3.4 trusts messages that are received from a PF_NETLINK socket, which allows local... |
Android | Confirmed | In CISA | 08 Sep 2022 |
|
CVE-2022-3075
Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 08 Sep 2022 |
|
CVE-2022-3723
Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 28 Oct 2022 |
|
CVE-2022-4135
Heap buffer overflow in GPU in Google Chrome prior to 107.0.5304.121 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 28 Nov 2022 |
|
CVE-2022-4262
Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 05 Dec 2022 |
|
CVE-2022-3038
Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 30 Mar 2023 |
|
CVE-2023-20963
In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges... |
Android | Confirmed | In CISA | 13 Apr 2023 |
|
CVE-2023-2033
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 17 Apr 2023 |
|
CVE-2023-2136
Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially... |
Chrome | Confirmed | In CISA | 21 Apr 2023 |
|
CVE-2023-3079
Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML... |
Chrome | Confirmed | In CISA | 07 Jun 2023 |
|
CVE-2023-4863
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds... |
Chrome, libwebp | Confirmed | In CISA | 13 Sep 2023 |
|
CVE-2023-35674
In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the code. This could lead to local... |
Android | Confirmed | In CISA | 13 Sep 2023 |
|
CVE-2023-5217
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially... |
Chrome, libvpx | Confirmed | In CISA | 02 Oct 2023 |
|
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as... |
Cloud Platform | Confirmed | In CISA | 10 Oct 2023 |
|
CVE-2023-6345
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially... |
Chrome | Confirmed | In CISA | 30 Nov 2023 |
|
CVE-2023-7024
Heap buffer overflow in WebRTC in Google Chrome prior to 120.0.6099.129 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 02 Jan 2024 |
|
CVE-2024-0519
Out of bounds memory access in V8 in Google Chrome prior to 120.0.6099.224 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 17 Jan 2024 |
|
CVE-2023-4762
Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page.... |
Chrome | Confirmed | In CISA | 06 Feb 2024 |
|
CVE-2023-21237
In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or... |
Android | Confirmed | In CISA | 05 Mar 2024 |
|
CVE-2024-29745
there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution... |
Android | Confirmed | In CISA | 04 Apr 2024 |
|
CVE-2024-29748
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... |
Android | Confirmed | In CISA | 04 Apr 2024 |
|
CVE-2024-4671
Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to... |
Chrome | Confirmed | In CISA | 13 May 2024 |
|
CVE-2024-4761
Out of bounds write in V8 in Google Chrome prior to 124.0.6367.207 allowed a remote attacker to perform an out of bounds memory write via a crafted... |
Chrome | Confirmed | In CISA | 16 May 2024 |
|
CVE-2024-4947
Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted... |
Chrome | Confirmed | In CISA | 20 May 2024 |
|
CVE-2024-5274
Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted... |
Chrome | Confirmed | In CISA | 28 May 2024 |
|
CVE-2024-32896
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution... |
Android | Confirmed | In CISA | 13 Jun 2024 |
|
CVE-2024-7971
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page.... |
Chrome | Confirmed | In CISA | 26 Aug 2024 |
|
CVE-2024-7965
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a... |
Chrome | Confirmed | In CISA | 28 Aug 2024 |
|
CVE-2024-43093
In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prevent access to sensitive... |
Android | Confirmed | In CISA | 07 Nov 2024 |
|
CVE-2025-2783
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remote attacker to... |
Chrome | Confirmed | In CISA | 27 Mar 2025 |
No Google CVEs match this search or filter.
Showing 90 of 90 Google known exploited vulnerabilities.
Recurring weakness patterns
Use after free, out-of-bounds write, and access account for 58 mapped occurrences across this Google KEV portfolio.
CWE-416
Use After Free
CWE-787
Out-of-bounds Write
CWE-843
Access of Resource Using Incompatible Type ('Type Confusion')
CWE-190
Integer Overflow or Wraparound
CWE-125
Out-of-bounds Read
CWE-20
Improper Input Validation
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
CWE-122
Heap-based Buffer Overflow
Early warning alerts
Get alerts on high-impact exploitation
Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.