Google June 2026 Android Update Patches 124 Flaws, One Actively Exploited

2026-06-03T01:24:15Ze486e8f2773b0778ab7b3fdc27a7bee4a720aee4cf80426dbc0a69a4d6206b93
APT activityAndroidMarimoPAN-OSWebLogicWinRARWordPressactive exploitationauthentication bypassbotnet takedowncredential theftnpm supply chainnuget supply chainpath traversalphishingprivilege escalationremote code executionsupply chain compromise

What happened

Multiple high-impact incidents reported: Google’s June 2026 Android update remediates 124 flaws including an actively exploited Framework privilege-escalation (CVE-2025-48595). Gamaredon weaponizes a WinRAR path-traversal (CVE-2025-8088) to deliver HTML-app payloads (GammaPhish → GammaWorm/GammaSteel). CISA added Oracle WebLogic CVE-2024-21182 to its KEV catalog due to active exploitation. PAN-OS/GlobalProtect authentication-bypass CVE-2026-0257 is being exploited in the wild. Attackers exploited Marimo CVE-2026-39987 to steal cloud credentials and used an LLM agent for post-compromise tasks.O

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
e486e8f2773b0778ab7b3fdc27a7bee4a720aee4cf80426dbc0a69a4d6206b93
Enrichment time
2026-06-03T01:24:15Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Google June 2026 Android Update Patches 124 Flaws, One Actively Exploited · Baitaphish