๐Ÿ” CVE Alert

CVE-2026-41872

HIGH 7.4
CVSS Score
7.4
EPSS Score
0.0%
EPSS Percentile
3th

"Kura Sushi Official App" provided by EPG, Inc. is vulnerable to improper certificate validation. A man-in-the-middle attack may allow eavesdropping on, or altering, the communication on push notifications between the affected application and the relevant server.

Vendor epg, inc.
Product "kura sushi official app" for android
Published May 12, 2026
Last Updated May 12, 2026
Stay Ahead of the Next One

Get instant alerts for epg, inc. "kura sushi official app" for android

Be the first to know when new high vulnerabilities affecting epg, inc. "kura sushi official app" for android are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Affected Versions

EPG, Inc. / "Kura Sushi Official App" for Android
from 2.0.11 to 3.9.10
EPG, Inc. / "Kura Sushi Official App" for iOS
from 2.0.11 to 3.9.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
play.google.com: https://play.google.com/store/apps/details?id=jp.co.kura_corpo&hl=ja apps.apple.com: https://apps.apple.com/jp/app/id942355925 jvn.jp: https://jvn.jp/en/jp/JVN38632731/