These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-28631 is a high-severity vulnerability in Google Android, with a CVSS score of 7.8. The vulnerability is due to a possible consent bypass via tapjacking/overlay attack in the buildMiniResolver of IntentForwarderActivity.java, which could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not required for exploitation.
A tapjacking/overlay attack in ContactsPickerActivity.kt could lead to local information disclosure with no additional execution privileges needed. This vulnerability affects Android applications and systems, potentially allowing attackers to access sensitive information. The attack requires user interaction, and Android developers, security teams, and IT administrators should assess exposure, verify UI s [truncated]
A logic error in the btm_sec_encrypt_change function of btm_sec.cc could lead to a downgrade attack, potentially resulting in remote information disclosure without requiring additional execution privileges or user interaction. This vulnerability affects Google Android systems, particularly versions 16.0 and 17.0. Defenders should assess exposure and verify patching to prevent potential downgrade attacks a [truncated]
CVE-2026-28624 is a high-severity vulnerability in Google Android, allowing local escalation of privilege without additional execution privileges needed. The vulnerability is due to a confused deputy, leading to possible read/write access to files without proper permissions. User interaction is not required for exploitation. This vulnerability affects Google Android deployments, which defenders should ass [truncated]
A local information disclosure vulnerability exists in the BleRssiRangingCapabilities.java file due to a missing permission check when writing to a parcel. This could allow local attackers to obtain the Bluetooth MAC address without requiring additional execution privileges or user interaction. The vulnerability has a CVSS score of 3.3 and a severity of LOW. The CVE record was published on 2026-09-08T19:1 [truncated]
CVE-2026-28622 is a low-severity vulnerability in the MediaProvider.java component of Google Android, allowing for local information disclosure due to a permissions bypass. The vulnerability has a CVSS score of 3.3 and requires no additional execution privileges or user interaction for exploitation. The CVE record was published on 2026-09-08T19:17:54.200Z and was last modified on 2026-09-15T14:07:35.353Z. [truncated]
A permissions bypass vulnerability exists in multiple locations within Google Android versions 16.0 and 17.0, potentially allowing unauthorized URI access. This could lead to local escalation of privilege without additional execution privileges needed. User interaction is not required for exploitation. Defenders responsible for managing and securing Google Android devices should assess exposure and priori [truncated]
CVE-2026-28618 is a high-severity vulnerability in Google Android, with a CVSS score of 8.8. A heap buffer overflow in the oapv.c file could lead to remote code execution with no additional execution privileges needed. User interaction is not required for exploitation. The CVE was published on 2026-09-08T19:17:53.970Z and last modified on 2026-09-15T14:24:07.937Z.
A CVE record for a persistent denial-of-service (DoS) vulnerability in WifiNetworkSuggestionsManager.java was published on 2026-09-08T19:17:53.853Z and last modified on 2026-09-15T14:23:43.973Z. The vulnerability, which has a CVSS score of 5.5, could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2026-28616 is a high-severity vulnerability in the Setup Wizard of Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is due to a confused deputy issue, which could lead to forced connection to a malicious network. This issue is particularly concerning because it can be exploited without user interaction, making it a significant ris [truncated]
CVE-2026-28614 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is due to a confused deputy in SlicePermissionActivity.java. User interaction is not required for exploitation. This vulnerability affects Android system administrators, security teams, and developers who should assess exposure and appl [truncated]
CVE-2026-28613 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with user interaction. The CVE record was published on 2026-09-08T19:17:53.507Z and has been modified since then. The NVD entry is currently Analyzed. This vulnerability exists in ChannelImpl.java, allowing launch of an arbitrary intent due to improper input validation. User interaction is needed for [truncated]
CVE-2026-28612 is a high-severity vulnerability in the Android operating system that could allow for local escalation of privilege. The vulnerability exists in the resolveActivity function of ActivityStarter.java and can be exploited without requiring additional execution privileges or user interaction. This CVE was published on 2026-09-08T19:17:53.330Z and was last modified on 2026-09-15T14:17:47.540Z.
CVE-2026-28611 is a high-severity vulnerability in Google Android, allowing for local escalation of privilege with no additional execution privileges needed due to a missing permission check in multiple functions of NfcService.java. This could enable silent payment session hijacking. The vulnerability affects Android deployments and requires defenders to prioritize verifying and applying patches, assessin [truncated]
CVE-2026-28609 is a high-severity vulnerability in Google Android, potentially allowing remote code execution. The vulnerability is caused by improper casting in MatroskaExtractor.cpp, which could lead to an out-of-bounds write. No user interaction is required for exploitation. This vulnerability affects Android system administrators, security teams, and developers who should assess exposure and apply pat [truncated]
CVE-2026-28607 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is due to a confused deputy, which could lead to a background activity launch bypass. This issue affects Android versions 15.0, 16.0, and 17.0. Defenders should assess exposure and prioritize patching for these versions. The vulnerabili [truncated]
CVE-2026-28606 is a critical vulnerability in an Android component, with a CVSS score of 9.8. The vulnerability is due to a logic error in the code, which could lead to remote escalation of privilege without user consent. The CVE record was published on 2026-09-08T19:17:52.823Z and was last modified on 2026-09-11T13:17:25.323Z. The NVD entry is currently Undergoing Analysis.
CVE-2026-28604 is a high-severity vulnerability in Google Android, with a CVSS score of 7.5. A race condition could lead to remote code execution with no additional execution privileges needed. User interaction is not required for exploitation. The CVE was published on 2026-09-08T19:17:52.727Z and last modified on 2026-09-15T14:27:45.060Z. Defenders responsible for Google Android systems, particularly tho [truncated]
CVE-2026-28603 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is due to a confused deputy in AppRestrictionsFragment.java, enabling read/write access to private files. This issue affects multiple Android versions, including 14.0, 15.0, 16.0, and 17.0. Android developers and security teams should a [truncated]
CVE-2026-28602 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is caused by a logic error in the ClipboardService.java file. Android versions 14.0, 15.0, 16.0, 16.0 QPR2, and 17.0 are affected. This issue could allow an attacker to gain elevated access to sensitive data or system functionality. And [truncated]
CVE-2026-28600 is a high-severity vulnerability in Google Android, allowing local escalation of privilege with no additional execution privileges needed. The vulnerability is due to a confused deputy in the PaymentDefaultDialog.java file. User interaction is not required for exploitation. Defenders should assess exposure and apply patches to prevent potential exploitation. The vulnerability affects Google [truncated]
CVE-2026-28599 is a high-severity vulnerability in the ActivityManagerService.java component of Google Android, potentially allowing for local escalation of privilege with no additional execution privileges needed. The vulnerability is caused by a logic error in the addCreatorToken function, which could lead to an Intent Redirection Bypass. User interaction is not required for exploitation.
CVE-2026-28596 is a medium-severity vulnerability in the GameManagerService.java of the Android operating system. A local attacker can exploit this vulnerability to cause a permanent denial of service due to resource exhaustion, without needing additional execution privileges or user interaction. This issue affects Android systems, particularly those with sensitive or critical operations, and defenders sh [truncated]
A logic error in multiple locations of the Android operating system could lead to local escalation of privilege with no additional execution privileges needed. This issue requires verification from official sources. User interaction is not needed for exploitation. The affected versions are Android 16.0 and 17.0. System administrators and security teams should assess exposure and apply patches to prevent p [truncated]
CVE-2026-28593 is a high-severity vulnerability in Google Android, allowing for local escalation of privilege with no additional execution privileges needed. The vulnerability is due to misleading or insufficient UI in the getItemList of SettingsFragment.java. User interaction is not needed for exploitation. This vulnerability affects Google Android systems and deployments. Defenders should assess exposur [truncated]
A logic error in the code could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. This vulnerability affects Android devices, and device administrators, security teams, and developers should assess exposure and prioritize verification of affected Android versions. The CVE record and NVD entry provide details on the vulner [truncated]
A logic error in PackageInstallerService.java could lead to a permanent denial of service (DoS) on a device. This issue can be exploited locally without additional execution privileges or user interaction. The vulnerability affects Android devices, and its exploitation could disrupt device functionality, requiring a device reboot or reinstallation for recovery. Evidence is limited, and specific version in [truncated]
A logical error in the camera_metadata.c file could lead to local escalation of privilege with no additional execution privileges needed. This vulnerability affects Android versions 14.0, 15.0, and 16.0, and system administrators should assess exposure and apply patches from the vendor advisory. The vulnerability has a high severity score of 7.8 and requires immediate attention from Android system adminis [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-09-08T19:17:51.607Z and has not been modified since then. The vulnerability is a missing permission check in ConfirmDeviceCredentialActivity.java, which could lead to unauthorized access and modification of device credentials, potentially resulting in local information disclosure. Defenders responsible [truncated]
A tapjacking/overlay attack vulnerability exists in the onCreate function of InstallLaunch.kt, potentially leading to local escalation of privilege without additional execution privileges needed. This vulnerability could allow attackers to deceive users into performing unintended actions, leading to privilege escalation. The vulnerability requires no user interaction for exploitation and affects Android i [truncated]