Sploitus

CVE-2026-0009

5 known exploits for CVE-2026-0009

In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected products
Android
Google Android
= 15.0, 16.0
CVSS 3.1
7.8 HIGH
EPSS
0.1% (0th percentile)
Weakness
CWE-269
NVD status
Modified
Published
2026-06-01
CVE-2026-0009 at NVD
Authoritative description, scoring and affected products

5 known exploits for CVE-2026-0009

Proof-of-concept code and exploit modules indexed by Sploitus