Buffer Overflow Vulnerability in Pavlok Behavioral Conditioning Wearable by Behavioral Technology Group
CVE-2026-87931
9.4CRITICAL
What is CVE-2026-87931?
A security flaw has been discovered in the Pavlok Behavioral Conditioning Wearable, specifically within the Apple Notification Center Service Event Handler. This vulnerability results in a buffer overflow, which could be exploited by attackers within the local network. Despite attempts to alert the vendor, there has been no response to address the issue, raising concerns for user safety.
Affected Version(s)
Pavlok Behavioral Conditioning Wearable 20260707
References
CVSS V4
Score:
9.4
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
drewbug (VulDB User)
VulDB CNA Team
