SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-21109

LOW · CVSS 2.1 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-13

CyberRota Analysis

AI-Generated

The Watch Plugin in versions prior to Android Watch 17 is vulnerable due to improper access control, enabling local attackers to gain unauthorized access to sensitive information. While the severity is classified as low, organizations using affected Android devices should prioritize remediation to mitigate potential data exposure risks. Users and administrators of Android Watch devices should ensure they are updated to the latest version to protect against this vulnerability.

CVE
CVE-2026-21109
Severity
LOW
CVSS
2.1
EPSS
0.10%
Android

Original NVD Description

Improper access control in Watch Plugin prior to Android Watch 17 allows local attackers to access sensitive information.