CyberRota Analysis
AI-GeneratedWebAPKs in Google Chrome on Android versions prior to 151.0.7922.109 are vulnerable due to insufficient validation of untrusted input, enabling local attackers to potentially execute a sandbox escape through a malicious file. This vulnerability poses a high risk as it could allow unauthorized access to sensitive data or system resources. Android app developers and organizations utilizing WebAPKs should prioritize addressing this issue to mitigate potential exploitation.
Original NVD Description
Insufficient validation of untrusted input in WebAPKs in Google Chrome on Android prior to 151.0.7922.109 allowed a local attacker to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
Related CVEs
Other vulnerabilities affecting the same vendor(s)