High severity7.8NVD Advisory· Published Jun 1, 2026· Updated Aug 26, 2026
CVE-2026-0009
CVE-2026-0009
Description
In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3News mentions
1- Android SDK: 25 Vulnerabilities Disclosed, Including Actively Exploited Zero-DayVypr Intelligence · Jun 1, 2026