LOW 1.9 NVD
CVE-2026-18604
A vulnerability was identified in textPlus Text Message and Call App up to 8.3.5 on Android. This impacts the function DialerActivity of the component com.gogii
A vulnerability was identified in textPlus Text Message and Call App up to 8.3.5 on Android. This impacts the function DialerActivity of the component com.gogii.textplus. Such manipulation leads to improper export of android application components. The attack needs to be performed locally. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure.
References
- https://github.com/actuator/com.gogii.textplus
- https://vuldb.com/cve/CVE-2026-18604
- https://vuldb.com/submit/851700
- https://vuldb.com/vuln/385527
- https://vuldb.com/vuln/385527/cti
This low severity vulnerability with a CVSS score of 1.9 was published on 2026-08-03 via NVD.
vulnfeed aggregates 9166 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.