VYPR
Unrated severityNVD Advisory· Published Jun 25, 2026· Updated Aug 3, 2026

Setracker2 Children's Smartwatch Ecosystem Use of hard-coded cryptographic key

CVE-2026-9220

Description

Setracker2 Android Companion App com.tgelec.setracker versions 3.1.5 and prior encrypts requests between the watch and its backend with static hardcoded AES keys and initialization vectors. This allows an attacker to decrypt Setracker2 watch traffic.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.