Cyber Resilience

← All vendors

Google Uses LLMs for vuln discovery

CPE vendor key: google · 3,492 CVEs published in the last 24 months.

CVEs (365 d)
2,887
▼ -108 vs prior 30d
Avg CVSS (365 d)
7.12
over 2,887 CVEs
Avg EPSS pct (365 d)
0.15
higher = more likely exploited
KEV hit rate (365 d)
0.4%
12 of 2,887 added to CISA KEV
LLM-credited CVEs
647
Openai 647

Monthly CVE volume — last 24 months

20242025202601099
Each point is one calendar month. Bars in the severity card to the right slice the same volume by CVSS band.

Severity mix

CritHighMedLow
Stacked by CVSS band (Critical / High / Medium / Low) using the best available metric per CVE.

Top affected products (24 mo)

chrome
2,400
android
1,266
chrome_os
38
mcp_toolbox_for_databases
9
pixel_6a
3
pixel_7a
3
pixel_tablet
3
pixel_3_xl
3
pixel_fold
3
pixel_5a
3
Distinct CVEs that include each product in their CPE configuration.

Top CWEs (24 mo)

CWE-416
726
CWE-20
436
CWE-787
328
CWE-125
251
CWE-451
196
CWE-693
136
CWE-346
126
CWE-122
106
CWE-457
103
CWE-284
85
Distinct CVEs assigned each weakness.

Recent CISA KEV adds (last 12 months)

AddedCVEProductKEV name
2026-06-09CVE-2026-11645Chromium V8Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
2026-04-01CVE-2026-5281DawnGoogle Dawn Use-After-Free Vulnerability
2026-03-13CVE-2026-3910Chromium V8Google Chromium V8 Improper Restriction of Operations Within the Bounds of a Memory Buffer Vulnerability
2026-03-13CVE-2026-3909SkiaGoogle Skia Out-of-Bounds Write Vulnerability
2026-02-17CVE-2026-2441ChromiumGoogle Chromium CSS Use-After-Free Vulnerability
2025-12-12CVE-2025-14174ChromiumGoogle Chromium Out of Bounds Memory Access Vulnerability
2025-11-19CVE-2025-13223Chromium V8Google Chromium V8 Type Confusion Vulnerability
2025-09-23CVE-2025-10585Chromium V8Google Chromium V8 Type Confusion Vulnerability
Filtered to KEV entries whose CISA vendor or product name matches this vendor exactly, to drop cross-OS noise (e.g. third-party Windows apps that CPE-map to Microsoft).

LLM-credited CVEs from this vendor

PublishedCVELLM familyModel(s)
2026-08-18CVE-2026-76047openaiOpenAI
2026-08-18CVE-2026-76046openaiOpenAI
2026-08-18CVE-2026-76045openaiOpenAI
2026-08-18CVE-2026-76044openaiOpenAI
2026-08-18CVE-2026-76043openaiOpenAI
2026-08-18CVE-2026-76042openaiOpenAI
2026-08-18CVE-2026-76041openaiOpenAI
2026-08-18CVE-2026-76040openaiOpenAI
2026-08-18CVE-2026-76039openaiOpenAI
2026-08-18CVE-2026-76038openaiOpenAI
2026-08-18CVE-2026-76037openaiOpenAI
2026-08-18CVE-2026-76036openaiOpenAI
2026-08-18CVE-2026-76034openaiOpenAI
2026-08-18CVE-2026-76033openaiOpenAI
2026-08-06CVE-2026-19177openaiOpenAI
2026-08-06CVE-2026-19176openaiOpenAI
2026-08-06CVE-2026-19175openaiOpenAI
2026-08-06CVE-2026-19174openaiOpenAI
2026-08-06CVE-2026-19173openaiOpenAI
2026-08-06CVE-2026-19172openaiOpenAI
2026-08-06CVE-2026-19171openaiOpenAI
2026-08-06CVE-2026-19170openaiOpenAI
2026-08-06CVE-2026-19169openaiOpenAI
2026-08-06CVE-2026-19168openaiOpenAI
2026-08-06CVE-2026-19167openaiOpenAI
From mythos_attributed_cves: CVEs whose NVD description or vendor advisory credits an LLM-assisted discovery. Confidence is high for every row.

Generated 23 August 2026 00:24 UTC .