Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 27 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oppo
Oppo wallet App |
|
| Vendors & Products |
Oppo
Oppo wallet App |
Mon, 27 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-346 | |
| Metrics |
ssvc
|
Mon, 27 Apr 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OPPO Wallet APP contains a trusted domain validation flaw that allows attackers to bypass protected interface access restrictions, which may lead to account token hijacking and sensitive information disclosure. | |
| Title | Sensitive Information Disclosure Vulnerability Caused by Trusted Domain Bypass in OPPO Wallet | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: OPPO
Published:
Updated: 2026-04-27T13:29:23.859Z
Reserved: 2026-01-06T06:15:53.765Z
Link: CVE-2026-22077
Updated: 2026-04-27T13:19:05.812Z
Status : Awaiting Analysis
Published: 2026-04-27T08:16:01.120
Modified: 2026-04-27T18:57:20.293
Link: CVE-2026-22077
No data.
OpenCVE Enrichment
Updated: 2026-04-28T05:00:14Z