---
id: CVE-2026-86701
title: >-
  Android application "ManabiPocket for Parents" contains an improper access
  control vulnerability in one of its components
summary: >-
  Android application "ManabiPocket for Parents" contains an improper access
  control vulnerability in one of its components. A malicious application
  installed on the user's Android device may exploit the affected component via
  an Intent, p…
severity: low
cvss: 2.5
cvssVector: 'CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N'
cwe:
  - CWE-926
vendor: 'NTT DOCOMO BUSINESS, Inc.'
product: ManabiPocket for Parents
affected:
  - manabipocket_for_parents <= 1.2.3
published: '2026-09-15'
updated: '2026-09-16'
sourceUpdated: '2026-09-16T19:27:25.623'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-86701'
references:
  - url: 'https://jvn.jp/en/jp/JVN72918755/'
    label: vultures@jpcert.or.jp
  - url: 'https://manabipocket.ed-cl.com/blog/information/info-1444/'
    label: vultures@jpcert.or.jp
tags:
  - nvd
  - cve.org
epss: 0.00138
epssPercentile: 0.02593
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-15T17:43:16.859095Z'
ingestedAt: '2026-09-15T06:32:35.356Z'
---

## Overview

Android application "ManabiPocket for Parents" contains an improper access control vulnerability in one of its components. A malicious application installed on the user's Android device may exploit the affected component via an Intent, potentially allowing the malicious application to obtain sensitive information from the affected application.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
