SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-45519

LOW · CVSS 3.3 EPSS 0.07% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-13

CyberRota Analysis

AI-Generated

The vulnerability allows unauthorized access to sensitive information due to a confused deputy scenario in the screenArgsForPermissionCheckIfAny function, potentially leading to local information disclosure without requiring additional execution privileges. Exploitation does not necessitate user interaction, making it a concern for any organization using the affected products. Security teams should prioritize this issue to mitigate the risk of data exposure.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-45519
Severity
LOW
CVSS
3.3
EPSS
0.07%

Original NVD Description

In screenArgsForPermissionCheckIfAny of multiple locations there is a possible risk of unauthorized access due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.