{"cve_id":"CVE-2025-48572","summary":"In multiple locations, there is a possible way to launch activities from the background due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.","cvss":7.8,"cvss_version":3.0,"cvss_v2":null,"cvss_v3":7.8,"epss":0.00211,"ranking_epss":0.43621,"kev":true,"propose_action":"Android Framework contains an unspecified vulnerability that allows for privilege escalation.","ransomware_campaign":"Unknown","references":["https://android.googlesource.com/platform/frameworks/base/+/e707f6600330691f9c67dc023c09f4cd2fc59192","https://source.android.com/security/bulletin/2025-12-01","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-48572"],"published_time":"2025-12-08T17:16:15","cpes":["cpe:2.3:o:google:android:13.0","cpe:2.3:o:google:android:14.0","cpe:2.3:o:google:android:15.0","cpe:2.3:o:google:android:16.0"]}