Medium severity5.1NVD Advisory· Published Sep 10, 2020· Updated Jun 17, 2026
CVE-2020-24655
CVE-2020-24655
Description
A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to potentially approve/deny an access request prior to unlocking the application with a PIN on older Android devices (effectively bypassing the PIN requirement).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Twilio/Authy 2-Factor Authentication applicationdescription
<24.3.7+ 1 more
- (no CPE)range: <24.3.7
- cpe:2.3:a:twilio:authy_2-factor_authentication:24.3.7:*:*:*:*:android:*:*
Patches
Vulnerability mechanics
References
1- www.twilio.com/changelognvdVendor Advisory
News mentions
0No linked articles in our index yet.