Medium severity4.6NVD Advisory· Published Jun 30, 2022· Updated Jun 17, 2026
CVE-2022-1955
CVE-2022-1955
Description
Session 1.13.0 allows an attacker with physical access to the victim's device to bypass the application's password/pin lock to access user data. This is possible due to lack of adequate security controls to prevent dynamic code manipulation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Session/Sessiondescription
- Range: <1.13.0
Patches
Vulnerability mechanics
References
2- fluidattacks.com/advisories/tempest/nvdExploitIssue TrackingThird Party Advisory
- github.com/oxen-io/session-android/pull/897nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.