Android vulnerability

In onActivityResult of AppWidgetConfigActivityProxy.java, there is a possible unauthorized URI permission grant due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Published 8 Sep 2026Updated 10 Sep 20261 sources
CVSS 0.0

Source timeline

CVE record published by NVDView source ↗