cd ../exploit-db
root@mhfh:~#ls -la /var/db/exploits/android/
android_exploit_db.json
🤖 Android Exploit DB
Curated Android vulnerabilities across AOSP, Pixel, and Samsung — sandbox escapes, kernel LPEs, infoleaks. Each entry links to a full technical writeup with PoC and downloads.
8
total
1
crit
6
high
1
med
android-exploit-db.sh --query
$ severity:
$ type:
$ sort:
CVE-2026-0073Critical
adbd wireless debugging remote shell
type: RCEaffected: 14-16date: 2026-05-05
$ cat /var/db/exploits/CVE-2026-0073.json →
CVE-2026-0032High
mem_protect.c out-of-bounds write
type: LPEaffected: Kernel 14-15date: 2026-03-02
$ cat /var/db/exploits/CVE-2026-0032.json →
CVE-2026-21385High
Graphics component buffer over-read
type: InfoLeakaffected: Qualcomm chipsetsdate: 2026-03-01
$ cat /var/db/exploits/CVE-2026-21385.json →
CVE-2025-48543High
Chrome sandbox escape use-after-free
type: Sandboxaffected: System 14-16date: 2025-11-20
$ cat /var/db/exploits/CVE-2025-48543.json →
CVE-2024-43093High
Framework path traversal sandbox escape
type: Sandboxaffected: 12-15date: 2024-11-04
$ cat /var/db/exploits/CVE-2024-43093.json →
CVE-2024-32896High
Pixel firmware privilege escalation
type: LPEaffected: Pixel ≤14date: 2024-06-11
$ cat /var/db/exploits/CVE-2024-32896.json →
CVE-2023-21492Medium
Samsung kernel pointer leak
type: InfoLeakaffected: Samsung ≤13date: 2023-05-09
$ cat /var/db/exploits/CVE-2023-21492.json →
CVE-2023-20963High
WorkSource parcel mismatch (in-the-wild)
type: LPEaffected: ≤13date: 2023-03-13
$ cat /var/db/exploits/CVE-2023-20963.json →
8 of 8 record(s)