Critical
Low
Medium
CVE-2025-26450
Overview
In onInputEvent of IInputMethodSessionWrapper.java, there is a possible way for an untrusted app to inject key and motion events to the default IME due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is ...
Critical
Low
Medium
No items found.