High severityNVD Advisory· Published Aug 14, 2025· Updated Apr 15, 2026
CVE-2025-27388
CVE-2025-27388
Description
Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.