SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-21105

MEDIUM · CVSS 5.9 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

Improper access control in the Collection component of Android versions prior to 1.0.1.14 (Android 15) and 2.0.02.7 (Android 16) enables local attackers to gain unauthorized access to sensitive information. This vulnerability poses a medium risk, particularly for devices running affected Android versions. Organizations and users relying on these versions should prioritize updates to mitigate potential data exposure.

CVE
CVE-2026-21105
Severity
MEDIUM
CVSS
5.9
EPSS
0.10%
Android

Original NVD Description

Improper access control in Collection prior to version 1.0.1.14 in Android 15 and 2.0.02.7 in Android 16 allows local attackers to access sensitive information.