logo

Android ADB vulnerability CVE-2026-0073: Find impacted assets

ID: 4c57e2e6-a36c-5567-9a45-123b669d2076

STIX ID: report--4c57e2e6-a36c-5567-9a45-123b669d2076

Feed Name: runZero Blog

Threat Score
75/100

Date Published: 2026-05-05

Date Updated: 2026-05-05

Author: Matthew Kienow

...
...

Google disclosed CVE-2026-0073, a high-severity authentication bypass in the Android wireless ADB daemon (adbd) that allows an unauthenticated attacker with adjacent network access to achieve remote code execution as the shell user. Affects Android 14, 15, 16, and 16-qpr2 prior to the 2026-05-01 security patch; mitigation is to upgrade to the 2026-05-01 security patch level or later. The advisory also includes a runZero query (protocol:=adb AND os:Android) to locate potentially impacted assets.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.