{"schema_version":1,"title":"Google Pixel Firmware vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 9 vulnerabilities in Google Pixel Firmware: 0 in the last 7 days and 8 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-58726, was published on 15 September 2026.","url":"https://junglewise.ai/threats/technologies/pixel-firmware","json_url":"https://junglewise.ai/threats/technologies/pixel-firmware.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/pixel-firmware","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":9,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":8,"last_90_days":8,"last_365_days":9},"latest":[{"cve":"CVE-2026-58726","cvss":6.7,"epss":0.001,"slug":"cve-2026-58726-google-pixel-gpca-permission-bypass-in-fsmreleasekey","title":"Google Pixel GPCA permission bypass in FsmReleaseKey","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:32.95+00:00","url":"https://junglewise.ai/threats/cve-2026-58726-google-pixel-gpca-permission-bypass-in-fsmreleasekey"},{"cve":"CVE-2026-58710","cvss":8.8,"epss":0.0037,"slug":"cve-2026-58710-google-pixel-bigocean-out-of-bounds-write-in-film-grain-decoding","title":"Google Pixel BigOcean out-of-bounds write in film grain decoding","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:32.453+00:00","url":"https://junglewise.ai/threats/cve-2026-58710-google-pixel-bigocean-out-of-bounds-write-in-film-grain-decoding"},{"cve":"CVE-2026-58698","cvss":6.7,"epss":0.001,"slug":"cve-2026-58698-google-pixel-firmware-permission-bypass-in-ap-pmic-handler","title":"Google Pixel firmware permission bypass in AP PMIC handler","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:31.997+00:00","url":"https://junglewise.ai/threats/cve-2026-58698-google-pixel-firmware-permission-bypass-in-ap-pmic-handler"},{"cve":"CVE-2026-58691","cvss":8.4,"epss":0.001,"slug":"cve-2026-58691-google-pixel-gpca-permission-bypass-in-fsm-c","title":"Google Pixel GPCA permission bypass in fsm.c","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:31.8+00:00","url":"https://junglewise.ai/threats/cve-2026-58691-google-pixel-gpca-permission-bypass-in-fsm-c"},{"cve":"CVE-2026-56985","cvss":8.4,"epss":0.001,"slug":"cve-2026-56985-google-pixel-keymint-type-confusion-privilege-escalation","title":"Google Pixel KeyMint type confusion privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:29.837+00:00","url":"https://junglewise.ai/threats/cve-2026-56985-google-pixel-keymint-type-confusion-privilege-escalation"},{"cve":"CVE-2026-56958","cvss":5.5,"epss":0.0009,"slug":"cve-2026-56958-google-pixel-kernel-out-of-bounds-read-in-gf-algo-c","title":"Google Pixel kernel out-of-bounds read in gf_algo.c","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:28.663+00:00","url":"https://junglewise.ai/threats/cve-2026-56958-google-pixel-kernel-out-of-bounds-read-in-gf-algo-c"},{"cve":"CVE-2026-56892","cvss":6.2,"epss":0.001,"slug":"cve-2026-56892-google-pixel-secure-world-information-disclosure-in","title":"Google Pixel Secure World information disclosure in ReadDataElement","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:24.5+00:00","url":"https://junglewise.ai/threats/cve-2026-56892-google-pixel-secure-world-information-disclosure-in"},{"cve":"CVE-2026-0183","cvss":4.4,"epss":0.0007,"slug":"cve-2026-0183-google-pixel-cpm-information-disclosure-via-confused-deputy","title":"Google Pixel CPM information disclosure via confused deputy","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:14.357+00:00","url":"https://junglewise.ai/threats/cve-2026-0183-google-pixel-cpm-information-disclosure-via-confused-deputy"},{"cve":"CVE-2026-0131","cvss":7.8,"slug":"cve-2026-0131-google-pixel-libpixelimsmedia-integer-overflow-in-rtppacket","title":"Google Pixel libpixelimsmedia integer overflow in RtpPacket::decodePacket","severity":"info","exploited":false,"published_at":"2026-06-16T20:16:23.99+00:00","url":"https://junglewise.ai/threats/cve-2026-0131-google-pixel-libpixelimsmedia-integer-overflow-in-rtppacket"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":8},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Google Chrome","slug":"chrome","vulnerabilities":2529,"url":"https://junglewise.ai/threats/technologies/chrome"},{"name":"Google Android","slug":"android","vulnerabilities":356,"url":"https://junglewise.ai/threats/technologies/android"},{"name":"Google Chrome for iOS","slug":"chrome-for-ios","vulnerabilities":79,"url":"https://junglewise.ai/threats/technologies/chrome-for-ios"},{"name":"Google Chromium V8","slug":"chromium-v8","vulnerabilities":41,"url":"https://junglewise.ai/threats/technologies/chromium-v8"},{"name":"Google Chromium","slug":"chromium","vulnerabilities":36,"url":"https://junglewise.ai/threats/technologies/chromium"},{"name":"Google TensorFlow","slug":"tensorflow","vulnerabilities":31,"url":"https://junglewise.ai/threats/technologies/tensorflow"},{"name":"Google Cloud Platform","slug":"google-cloud-platform","vulnerabilities":29,"url":"https://junglewise.ai/threats/technologies/google-cloud-platform"},{"name":"Google Android Framework","slug":"android-framework","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/android-framework"},{"name":"Google Chrome for Android","slug":"chrome-for-android","vulnerabilities":21,"url":"https://junglewise.ai/threats/technologies/chrome-for-android"},{"name":"Google ChromeOS","slug":"chromeos","vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/chromeos"},{"name":"Google Pixel Bootloader","slug":"pixel-bootloader","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/pixel-bootloader"},{"name":"Google WebView","slug":"webview","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/webview"}],"technology":{"hub":true,"name":"Google Pixel Firmware","slug":"pixel-firmware","vendor":{"name":"Google","slug":"google","url":"https://junglewise.ai/threats/vendors/google"},"aliases":[],"category":"firmware","homepage":"https://support.google.com/pixelphone","repo_url":"https://android.googlesource.com/","description":"Firmware for Google Pixel mobile devices.","url":"https://junglewise.ai/threats/technologies/pixel-firmware"},"most_severe":[{"cve":"CVE-2026-58710","cvss":8.8,"epss":0.0037,"slug":"cve-2026-58710-google-pixel-bigocean-out-of-bounds-write-in-film-grain-decoding","title":"Google Pixel BigOcean out-of-bounds write in film grain decoding","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:32.453+00:00","url":"https://junglewise.ai/threats/cve-2026-58710-google-pixel-bigocean-out-of-bounds-write-in-film-grain-decoding"},{"cve":"CVE-2026-58691","cvss":8.4,"epss":0.001,"slug":"cve-2026-58691-google-pixel-gpca-permission-bypass-in-fsm-c","title":"Google Pixel GPCA permission bypass in fsm.c","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:31.8+00:00","url":"https://junglewise.ai/threats/cve-2026-58691-google-pixel-gpca-permission-bypass-in-fsm-c"},{"cve":"CVE-2026-56985","cvss":8.4,"epss":0.001,"slug":"cve-2026-56985-google-pixel-keymint-type-confusion-privilege-escalation","title":"Google Pixel KeyMint type confusion privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-15T19:17:29.837+00:00","url":"https://junglewise.ai/threats/cve-2026-56985-google-pixel-keymint-type-confusion-privilege-escalation"},{"cve":"CVE-2026-58726","cvss":6.7,"epss":0.001,"slug":"cve-2026-58726-google-pixel-gpca-permission-bypass-in-fsmreleasekey","title":"Google Pixel GPCA permission bypass in FsmReleaseKey","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:32.95+00:00","url":"https://junglewise.ai/threats/cve-2026-58726-google-pixel-gpca-permission-bypass-in-fsmreleasekey"},{"cve":"CVE-2026-58698","cvss":6.7,"epss":0.001,"slug":"cve-2026-58698-google-pixel-firmware-permission-bypass-in-ap-pmic-handler","title":"Google Pixel firmware permission bypass in AP PMIC handler","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:31.997+00:00","url":"https://junglewise.ai/threats/cve-2026-58698-google-pixel-firmware-permission-bypass-in-ap-pmic-handler"},{"cve":"CVE-2026-56892","cvss":6.2,"epss":0.001,"slug":"cve-2026-56892-google-pixel-secure-world-information-disclosure-in","title":"Google Pixel Secure World information disclosure in ReadDataElement","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:24.5+00:00","url":"https://junglewise.ai/threats/cve-2026-56892-google-pixel-secure-world-information-disclosure-in"},{"cve":"CVE-2026-56958","cvss":5.5,"epss":0.0009,"slug":"cve-2026-56958-google-pixel-kernel-out-of-bounds-read-in-gf-algo-c","title":"Google Pixel kernel out-of-bounds read in gf_algo.c","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:28.663+00:00","url":"https://junglewise.ai/threats/cve-2026-56958-google-pixel-kernel-out-of-bounds-read-in-gf-algo-c"},{"cve":"CVE-2026-0183","cvss":4.4,"epss":0.0007,"slug":"cve-2026-0183-google-pixel-cpm-information-disclosure-via-confused-deputy","title":"Google Pixel CPM information disclosure via confused deputy","severity":"medium","exploited":false,"published_at":"2026-09-15T19:17:14.357+00:00","url":"https://junglewise.ai/threats/cve-2026-0183-google-pixel-cpm-information-disclosure-via-confused-deputy"},{"cve":"CVE-2026-0131","cvss":7.8,"slug":"cve-2026-0131-google-pixel-libpixelimsmedia-integer-overflow-in-rtppacket","title":"Google Pixel libpixelimsmedia integer overflow in RtpPacket::decodePacket","severity":"info","exploited":false,"published_at":"2026-06-16T20:16:23.99+00:00","url":"https://junglewise.ai/threats/cve-2026-0131-google-pixel-libpixelimsmedia-integer-overflow-in-rtppacket"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}