← back
CVE-2026-0082

CVE-2026-0082

CVSS 10 CRITICALEPSS 0.2%CWE-453
In tryStartActivity of NfcDispatcher.java, there is a possible automatic special app access permission assignment due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Affected products
Google · Android

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →