Google Support
support.google.com › product-documentation › answer › 13658251
Devices & Services Vulnerability Severity & Reporting - Help
The first task in handling a security vulnerability is to identify the severity of the bug and which component of the device is affected. The severity level determines how the issue is prioritized, and the component determines who fixes the bug, who is notified, and how the fix gets deployed to users. For software apps and services associated with our devices, we follow · Google’s vulnerability disclosure deadline.
Projectzero
projectzero.google
Google Project Zero
Incoming SMS and RCS audio attachments received by Google Messages are now automatically decoded with no user interaction. As a result, audio decoders are now in the 0-click attack surface of most Android phones.
Videos
02:36
Google Chrome Weekly Security Fixes Released (No Information Yet!)
02:35
IMPORTANT: Chrome and Chromium Browser Update Fixes 79 Security ...
02:52
IMPORTANT: Google Chrome 148 Got a BIG Security Update, Fixing ...
01:51
Google Threat Intelligence Use Case: Find How a Specific ...
01:26
Google Threat Intelligence Use Case: Exploring Vulnerabilities ...
Google's Vulnerability Update You NEED to Know About (07 ...
Google
docs.cloud.google.com › security command center › vulnerability findings
Vulnerability findings | Security Command Center | Google Cloud Documentation
You can filter findings by various attributes on the following Google Cloud console pages: ... For instructions on fixing findings and protecting your resources, see Remediating Security Health Analytics findings. The API_KEY_SCANNER detector identifies vulnerabilities related to API keys used in your cloud deployment.
Google Bug Hunters
bughunters.google.com
Google Bug Hunters - Google Bug Hunters
Google Bug Hunters is aimed at external security researchers who want to contribute to keeping Google products safe and secure. You can report security vulnerabilities to our vulnerability reward program (VRP), read up on our program rules (including rewards on offer), access learning content, and much more…report a security vulnerability
CVE Details
cvedetails.com › vendor › 1224 › Google.html
Google : Vulnerability Statistics
This page lists vulnerability statistics for all products of Google. Vulnerability statistics provide a quick overview for security vulnerabilities related to software products of Google.
Google Cloud
cloud.google.com › documentation › cloud customer care › security bulletins
Security Bulletins | Cloud Customer Care | Google Cloud Documentation
Three security vulnerabilities, CVE-2021-4154, CVE-2021-22600, and CVE-2022-0185, have been discovered in the Linux kernel, each of which can lead to either a container breakout, privilege escalation on the host, or both.
CIS Center for Internet Security
cisecurity.org › cis advisories › a vulnerability in google chrome could allow for arbitrary code execution
A Vulnerability in Google Chrome Could Allow for Arbitrary Code Execution
February 18, 2026 - A vulnerability has been discovered in Google Chrome which could allow for arbitrary code execution. Successful exploitation of the vulnerability could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with the user an attacker could ...
Forbes
forbes.com › sites › daveywinder › 2026 › 04 › 24 › new-google-chrome-security-alert-for-35-billion-users
New Google Chrome Security Alert For All Users
April 25, 2026 - CVE-2026-6921, meanwhile, is a medium-severity GPU vulnerability, with the same outcomes, but this time using a malicious video file. Thankfully, Chrome updates are handled automatically. But it never hurts to kickstart the process rather than wait. You can do this by using the three-dot menu in your browser and heading for Help|About Google Chrome.
Dark Reading
darkreading.com › home › vulnerabilities & threats
Google Fixes Critical RCE Flaw in AI-Based 'Antigravity' Tool
April 22, 2026 - The prompt-injection vulnerability in the agentic AI product for filesystem operations was a sanitization issue that allowed for sandbox escape and arbitrary code execution. ... Google has fixed a critical flaw in its agentic integrated developer environment (IDE) Antigravity that led to sandbox escape and remote code execution (RCE) after researchers created a proof of concept (PoC) prompt injection attack ...
CVE Details
cvedetails.com › vulnerability-list › vendor_id-1224 › Google.html
https://www.cvedetails.com/vulnerability-list/vend...
Security vulnerabilities related to Google : List of vulnerabilities affecting any product of this vendor
Google Bug Hunters
bughunters.google.com › report
Report a security vulnerability in a Google-owned product
This is the place to report security vulnerabilities found in any Google or Alphabet (Bet) subsidiary hardware, software, or web service. This includes reporting to the Google VRP as well as many other VRPs such as Android, Cloud, Chrome, ChromeOS, Chrome Extensions, Mobile, Abuse, and OSS.
Malwarebytes
malwarebytes.com › home › update chrome: google patches actively exploited vulnerability and 73 others
Update Chrome: Google patches actively exploited vulnerability and 73 others | Malwarebytes
1 week ago - Google's latest Chrome update fixes 74 security vulnerabilities, including one under active attack.