Google confirmed that attackers are actively exploiting a high-severity security flaw in Pixel smartphone modems.
The vulnerability, identified as CVE-2026-58704, allows attackers on adjacent networks to gain elevated device privileges. This exploit requires no user interaction to compromise the hardware.
Google reported in its September 2026 security bulletin that the flaw is seeing limited, targeted exploitation. The company has not disclosed specific details regarding the identity of the attackers or their targets.
The broader security update addresses 110 total vulnerabilities affecting Pixel devices. Google urges all users to update their devices to the September 5, 2026 patch level or later.