CVE-2026-84283Medium· 6.8▾ SunlitSecure Folder 1.2 stores files selected for its password-protected vault as unencrypted files in the Android shared-storage tree. A local application or file manager that has access to the relevant shared-storage path can enumerate, copy…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 37.4 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Secure Folder 1.2 stores files selected for its password-protected vault as unencrypted files in the Android shared-storage tree. A local application or file manager that has access to the relevant shared-storage path can enumerate, copy, and open those files without authenticating to Secure Folder.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2024-10041Medium· 4.7A vulnerability was found in PAM
CVE-2026-77875Medium· 6.8The application protects access through its calculator-style vault passcode, but the stored data is not bound to that authentication boundary
CVE-2026-44629High· 7.9Improper access control to the Synergis Softwire installation folder
CVE-2025-2241High· 8.2A flaw was found in Hive, a component of Multicluster Engine (MCE) and Advanced Cluster Management (ACM)
CVE-2024-38312Medium· 6.5When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly within the sandboxed app bundle after app termination This vulnerability affects Firefox for iOS < 127.