CyberRota Analysis
AI-GeneratedThe PayRange Android app, versions 7.0.7 and earlier, is vulnerable to an SSL bypass flaw that permits the acceptance of invalid certificates in webviews. This vulnerability could allow remote, unauthenticated attackers to intercept and steal sensitive user information. Organizations utilizing this app should prioritize patching to mitigate potential data breaches.
CVE
CVE-2026-13462
Severity
HIGH
CVSS
7.5
EPSS
0.28%
Android
Original NVD Description
PayRange Android app, version 7.0.7 and below, contains an SSL bypass vulnerability that allows invalid certificates to be accepted in application webviews. A remote and unauthenticated attacker can steal information that the user sends.