
Google's June Android Update Patches a Zero-Click Privilege Escalation Flaw Under Active Exploitation
CVE-2025-48595, a zero-click elevation-of-privilege vulnerability in the Android Framework, is being actively exploited in targeted attacks. CISA has added it to its Known Exploited Vulnerabilities catalog. Android 14, 15, and 16 are all affected.










