CVE-2025-48640
HIGH
google
android
NVD
CVSS Score
8
Severity
HIGH
Published
Jun 17, 2026
Vendor
google
Description
In multiple locations, there is a possible 3rd party passkey entry pairing approval due to a missing permission check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.