Applock
by Tecno
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-12603 | Cri | 0.64 | 9.8 | 0.00 | Dec 13, 2024 | A logic vulnerability in the the mobile application (com.transsion.applock) can lead to bypassing the application password. | ||
| CVE-2025-68709 | 0.00 | — | — | May 26, 2026 | SailingLab AppLock (aka com.alpha.applock) 4.3.8 for Android allows a local attacker to trigger arbitrary JavaScript execution via BrowserMainActivity, which accepts VIEW intents with javascript: URIs. This unsafe navigation path results in script execution and may allow UI… | |||
| CVE-2023-21484 | 0.00 | — | 0.00 | May 4, 2023 | Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation. | |||
| CVE-2022-1959 | 0.00 | — | 0.00 | Sep 30, 2022 | AppLock version 7.9.29 allows an attacker with physical access to the device to bypass biometric authentication. This is possible because the application did not correctly implement fingerprint validations. |
- risk 0.64cvss 9.8epss 0.00
A logic vulnerability in the the mobile application (com.transsion.applock) can lead to bypassing the application password.
- CVE-2025-68709May 26, 2026risk 0.00cvss —epss —
SailingLab AppLock (aka com.alpha.applock) 4.3.8 for Android allows a local attacker to trigger arbitrary JavaScript execution via BrowserMainActivity, which accepts VIEW intents with javascript: URIs. This unsafe navigation path results in script execution and may allow UI…
- CVE-2023-21484May 4, 2023risk 0.00cvss —epss 0.00
Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation.
- CVE-2022-1959Sep 30, 2022risk 0.00cvss —epss 0.00
AppLock version 7.9.29 allows an attacker with physical access to the device to bypass biometric authentication. This is possible because the application did not correctly implement fingerprint validations.