CWE-926: CWE-926

33
Total CVEs
0
Critical
2
High
5.4
Avg CVSS

Yearly Trend

2026
1
2025
28
2024
2
2023
2

Top Affected Vendors

1 Boschrexroth 1
2 Yalantis 1
3 Google 1
4 Huuugegames 1
5 Sayweee 1
6 Buzzfeed 1
7 Mail 1
8 Aftership 1
9 Verkehrsauskunft 1
10 Voice Changer Project 1

All CWE-926 CVEs (33)

CVE-2025-15464
7.5

This vulnerability allows external applications to bypass security controls and directly launch Gmail with inbox access by exploiting an exported Acti...

Jan 8, 2026
CVE-2023-41960
7.1

This vulnerability allows unprivileged third-party Android apps to interact with an improperly secured content provider in the Bosch Android Agent app...

Oct 25, 2023
CVE-2023-20962
5.5

This vulnerability in Android 13 allows malicious apps to start foreground activities from the background using an unsafe PendingIntent, potentially e...

Mar 24, 2023
CVE-2025-14517
5.3

This vulnerability in Yalantis uCrop library allows improper export of Android application components, potentially enabling local attackers to spoof i...

Dec 11, 2025
CVE-2025-10721
5.3

This vulnerability in the Webull Investing & Trading App for Android allows improper export of application components via AndroidManifest.xml, enablin...

Sep 19, 2025
CVE-2025-10722
5.3

This vulnerability in SKTLab Mukbee App 1.01.196 on Android allows improper export of application components via AndroidManifest.xml manipulation. Att...

Sep 19, 2025
CVE-2025-10718
5.3

This vulnerability in Ooma Office Business Phone App for Android allows improper export of application components, potentially enabling local attacker...

Sep 19, 2025
CVE-2025-10717
5.3

This vulnerability in CamScanner Android app allows improper export of application components, potentially enabling local attackers to access sensitiv...

Sep 19, 2025
CVE-2025-10716
5.3

This vulnerability in Creality Cloud App up to version 6.1.0 on Android allows improper export of application components via manipulation of AndroidMa...

Sep 19, 2025
CVE-2025-10715
5.3

This vulnerability allows improper export of Android application components in APEUni PTE Exam Practice App up to version 10.8.0, enabling local attac...

Sep 19, 2025
CVE-2025-5500
5.3

This vulnerability allows improper export of Android application components in the ZhenShi Mibro Fit App, enabling local attackers to access sensitive...

Sep 9, 2025
CVE-2025-9677
5.3

This vulnerability allows local attackers to exploit improperly exported Android application components in Modo Legend of the Phoenix mobile game. The...

Aug 29, 2025
CVE-2025-9675
5.3

This vulnerability in Voice Changer App allows improper export of Android application components via manipulation of AndroidManifest.xml. Attackers ca...

Aug 29, 2025
CVE-2025-9673
5.3

This vulnerability in the Kakao Hey Kakao Android app allows improper export of application components via AndroidManifest.xml, potentially enabling l...

Aug 29, 2025
CVE-2025-9671
5.3

This vulnerability in UAB Paytend App for Android allows improper export of application components via manipulation of AndroidManifest.xml. Attackers ...

Aug 29, 2025
CVE-2025-9135
5.3

This vulnerability allows improper export of Android application components in multiple Austrian public transport apps, enabling local attackers to po...

Aug 19, 2025
CVE-2025-9134
5.3

This vulnerability allows improper export of Android application components in the AfterShip Package Tracker App, enabling local attackers to potentia...

Aug 19, 2025
CVE-2025-9102
5.3

This vulnerability in the 1&1 Mail & Media mail.com Android app allows improper export of application components via AndroidManifest.xml, enabling loc...

Aug 18, 2025
CVE-2025-9097
5.3

This vulnerability in Euro Information CIC's Android banking app allows improper export of application components via AndroidManifest.xml manipulation...

Aug 18, 2025
CVE-2025-9093
5.3

This vulnerability in BuzzFeed App for Android allows local attackers to improperly access exported application components, potentially leading to dat...

Aug 17, 2025
CVE-2025-8745
5.3

This vulnerability in Weee RICEPO App 6.17.77 on Android allows improper export of Android application components via AndroidManifest.xml manipulation...

Aug 9, 2025
CVE-2025-8707
5.3

This vulnerability in Huuge Box App 1.0.3 on Android allows improper export of application components via AndroidManifest.xml manipulation. Attackers ...

Aug 8, 2025
CVE-2025-8524
5.3

This vulnerability in Boquan DotWallet App 2.15.2 on Android allows improper export of application components via AndroidManifest.xml manipulation. At...

Aug 4, 2025
CVE-2025-8523
5.3

This vulnerability in RiderLike Fruit Crush-Brain App 1.0 for Android allows improper export of application components via AndroidManifest.xml, potent...

Aug 4, 2025
CVE-2025-8513
5.3

This vulnerability in Caixin News App for Android allows improper export of application components via AndroidManifest.xml. Attackers with local acces...

Aug 3, 2025
CVE-2025-8512
5.3

This vulnerability allows improper export of Android application components in TVB Big Big Shop App, potentially enabling local attackers to access se...

Aug 3, 2025
CVE-2025-8257
5.3

This vulnerability in Lobby Universe Lobby App for Android allows improper export of application components via AndroidManifest.xml. Attackers with lo...

Jul 28, 2025
CVE-2025-8207
5.3

This vulnerability in Canara ai1 Mobile Banking App allows improper export of Android application components via AndroidManifest.xml manipulation. Att...

Jul 26, 2025
CVE-2025-7940
5.3

This vulnerability in Genshin Albedo Cat House App 1.0.2 for Android allows improper export of application components via AndroidManifest.xml manipula...

Jul 21, 2025
CVE-2025-7892
5.3

This vulnerability in IDnow App for Android allows improper export of application components via AndroidManifest.xml, potentially enabling local attac...

Jul 20, 2025
CVE-2025-7890
5.3

This vulnerability in the Dunamu StockPlus Android app allows improper export of application components via AndroidManifest.xml manipulation. Attacker...

Jul 20, 2025
CVE-2023-41816
5.0

This vulnerability in Motorola Services Main application allows a local attacker to write to a local database due to improper export controls. It affe...

May 3, 2024
CVE-2023-41822
4.8

This vulnerability in Motorola Interface Test Tool allows a malicious local application to execute operating system commands through improper export f...

May 3, 2024

About CWE-926 (CWE-926)

Our database tracks 33 CVEs classified as CWE-926, with 0 rated critical and 2 rated high severity. The average CVSS score for CWE-926 vulnerabilities is 5.4.

External reference: View CWE-926 on MITRE CWE →

Monitor CWE-926 Vulnerabilities

Get alerted when new CWE-926 CVEs affect your infrastructure.

Start Monitoring Free