CVE-2014-7224: Google Android
High severity, CVSS 8.8. EPSS: 2% chance of exploitation in the next 30 days.
A Code Execution vulnerability exists in Android prior to 4.4.0 related to the addJavascriptInterface method and the accessibility and accessibilityTraversal objects, which could let a remote malicious user execute arbitrary code.
Affected products
- Google Android: before 4.4 (fixed in 4.4)
Published 2020-02-07. Last modified 2026-06-17.