Insecure Default Value Leads to Permission Issues in Android's NfcDispatcher
CVE-2026-0082
10CRITICAL
What is CVE-2026-0082?
A security flaw in the NfcDispatcher component of Android may allow for automatic assignment of special app access permissions due to an insecure default configuration. This vulnerability can be exploited locally without requiring any additional execution privileges or user interaction, potentially enabling unauthorized users to gain elevated privileges on the affected device.
Affected Version(s)
Android 17