VYPR

DeviceId

by Google

CVEs (1)

  • CVE-2025-48611CriMar 10, 2026
    risk 0.65cvss 10.0epss 0.00

    In DeviceId of DeviceId.java, there is a possible desync in persistence due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.