CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
exploit
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2023-20918
Severity
CRITICAL
CVSS
9.8
EPSS
0.77%
Java
Original NVD Description
In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execution privileges needed. User interaction is not needed for exploitation.