Improper Export Vulnerability in Voice Changer App by Tuiyang Keji
CVE-2025-9675
Key Information:
- Vendor
Tuiyang Keji
- Status
- Vendor
- CVE Published:
- 29 August 2025
Badges
What is CVE-2025-9675?
A vulnerability has been identified in the Voice Changer App, specifically affecting versions up to 1.1.0, where improper handling of the AndroidManifest.xml can enable unauthorized export of application components. This security flaw allows attackers to potentially manipulate local host executions, leading to a variety of exploits. The issue has been publicly disclosed and is likely to be leveraged in attacks, emphasizing the need for users and administrators to ensure they are using the latest version of the application.
Affected Version(s)
Voice Changer App 1.0
Voice Changer App 1.1.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved