CyberRota Analysis
AI-GeneratedImproper access control in the Collection component of Android versions prior to 1.0.1.14 (Android 15) and 2.0.02.7 (Android 16) enables local attackers to gain unauthorized access to sensitive information. This vulnerability poses a medium risk, particularly for devices running affected Android versions. Organizations and users relying on these versions should prioritize updates to mitigate potential data exposure.
CVE
CVE-2026-21105
Severity
MEDIUM
CVSS
5.9
EPSS
0.10%
Android
Original NVD Description
Improper access control in Collection prior to version 1.0.1.14 in Android 15 and 2.0.02.7 in Android 16 allows local attackers to access sensitive information.