CVE-2025-26454

7.8HIGH

In validateUriSchemeAndPermission of DisclaimersParserImpl.java , there is a possible way to access data from another user due to a confused deputy. This could lead to local escalation of privilege wi

Veröffentlicht: 9/4/2025Aktualisiert: 9/8/2025

Beschreibung

In validateUriSchemeAndPermission of DisclaimersParserImpl.java , there is a possible way to access data from another user due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

KI-AnalyseKI-gestützt

Betroffene Produkte

googleandroid
13.0
googleandroid
14.0
googleandroid
15.0

Referenzen