
CVE-2026-20990 Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local attackers to launch arbitrary activity with Secure Fol… https://www.cve.org/CVERecord?id=CVE-2026-20990
Post summary
The brief excerpt announces CVE-2026-20990, noting a local‑privilege flaw in Secure Folder that lets attackers launch arbitrary activities via improperly exported components.
