CVE-2026-73335

Improper Access Control in Myna Point

マイナポイントにおけるアクセス制限不備の脆弱性

Android application "Myna Point" is vulnerable to Improper Authorization in Handler for Custom URL Scheme (CWE-939). A malicious application installed on the user's Android device may exploit the affected application's functionality through an Intent, potentially allowing arbitrary JavaScript to be executed within the affected application.

Disclosure Date

2026/08/26

Credit

RyotaK(https://ryotak.net)

Reference