CVE-2026-41872
CVSS Score
7.4
EPSS Score
0.0%
EPSS Percentile
3th
"Kura Sushi Official App" provided by EPG, Inc. is vulnerable to improper certificate validation. A man-in-the-middle attack may allow eavesdropping on, or altering, the communication on push notifications between the affected application and the relevant server.
| Vendor | epg, inc. |
| Product | "kura sushi official app" for android |
| Published | May 12, 2026 |
| Last Updated | May 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for epg, inc. "kura sushi official app" for android
Be the first to know when new high vulnerabilities affecting epg, inc. "kura sushi official app" for android are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N Affected Versions
EPG, Inc. / "Kura Sushi Official App" for Android
from 2.0.11 to 3.9.10
EPG, Inc. / "Kura Sushi Official App" for iOS
from 2.0.11 to 3.9.10