cbcvebase.
CVE-2026-44279
published 2026-05-12

CVE-2026-44279: An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions…

PriorityP425medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.10%
0.9th percentile
An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions, FortiTokenAndroid 5.2 all versions may allow attacker to disclose information via an exported Content Provider URI.

Affected

8 ranges
VendorProductVersion rangeFixed in
fortinetfortitoken_mobile
fortinetfortitoken_mobile
fortinetfortitoken_mobile
fortinetfortitoken_mobile
fortinetfortitoken_mobile
fortinetfortitokenandroid
fortinetfortitokenandroid
fortinetfortitokenandroid5.2.0 – 5.2.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.