
Pixel Modem Flaw Under Limited Exploitation Prompts Urgent Patch
Google says a high-severity flaw in Pixel's cellular modem (CVE-2026-58704) is being exploited in the wild via targeted, zero-click attacks that could bypass permissions and escalate privileges. A September 2026 patch set fixes this and 109 other flaws, including kernel privilege escalations and remote code execution. CISA added CVE-2026-58704 to its Known Exploited Vulnerabilities list with a patch deadline for federal agencies; users should update to the latest Pixel security level (2026-09-05 or newer) under Settings > Security & privacy.