CVE-2026-58704
In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- Published Sep 15, 2026
- CVSS 8.8 high
- 0.6% chance of exploitation in the next 30 days (EPSS)
- In CISA's Known Exploited Vulnerabilities catalog
Affected software
In the news
- ⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks The Hacker News ·
- CISA Adds One Known Exploited Vulnerability to Catalog CISA ·
- Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation The Hacker News ·
- Android security advisory – September 2026 monthly rollup (AV26-920) – Update 1 Canadian Centre for Cyber Security ·