CVE-2026-85125

Summary

The Android application "YAMAP -Social Trekking GPS App" contains an improper access control vulnerability in its WebView implementation. The in-app browser may cause information leakage from the app or redirect users to unintended websites.

Affected Software

VendorProductVersion RangeStatus
YAMAP INC.YAMAP -Social Trekking GPS App0 <= 17.1.0affected

Weaknesses

  • CWE-940: Improper Verification of Source of a Communication Channel

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References