CVE 5.6 MEDIUM

Sensitive Information Disclosure Vulnerability Caused by Trusted Domain Bypass in OPPO Wallet_CVE-2026-22077

5.6 / 10
MEDIUM
CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/AU:N/R:A/V:D/RE:L/U:Amber

Description

OPPO Wallet APP contains a trusted domain validation flaw that allows attackers to bypass protected interface access restrictions, which may lead to account token hijacking and sensitive information disclosure.

Basic Information

ID CVE-2026-22077
Source OPPO
Published Apr 27, 2026 at 06:37

Affected Product

Vendor OPPO
Product OPPO Wallet APP
Version all
Affected Versions OPPO OPPO Wallet APP all

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.