Android Matrix Client Vulnerability in Element Application
CVE-2025-27606

Currently unrated

Key Information:

Vendor

Element

Vendor
CVE Published:
14 March 2025

What is CVE-2025-27606?

Element Android, a Matrix client provided by Element, is susceptible to an authentication bypass vulnerability where the application may fail to log out users after multiple incorrect PIN attempts. If an attacker gains physical access to a device running versions up to 1.6.32, they can exploit this flaw to guess the user's PIN. This issue poses a significant risk as it undermines the security of user accounts. The vulnerability has been addressed in version 1.6.34, which mitigates the risk by ensuring users are logged out after exceeding the allowed number of incorrect PIN entries.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.