Exported Activity allows external applications to gain application context and directly launch Gmail with inbox access, bypassing security controls.
References
| Link | Resource |
|---|---|
| https://korelogic.com/Resources/Advisories/KL-001-2026-001.txt | Exploit Third Party Advisory |
| http://seclists.org/fulldisclosure/2026/Jan/12 | Exploit Mailing List Third Party Advisory |
| https://korelogic.com/Resources/Advisories/KL-001-2026-001.poc.js.txt | Exploit |
Configurations
History
No history.
Information
Published : 2026-01-08 21:15
Updated : 2026-02-12 17:51
NVD link : CVE-2025-15464
Mitre link : CVE-2025-15464
CVE.ORG link : CVE-2025-15464
JSON object : View
Products Affected
yintibao
- fun_print
CWE
CWE-926
Improper Export of Android Application Components
