๐Ÿ” CVE Alert

CVE-2026-68927

LOW 3.0

MobSF: SSRF port restriction bypass in assetlinks_check

CVSS Score
3.0
EPSS Score
0.0%
EPSS Percentile
0th

MobSF is a mobile application security testing tool used. Prior to 4.5.1, get_browsable_activities in mobsf/StaticAnalyzer/views/android/manifest_analysis.py validates only an Android manifest android:host value with valid_host before appending a separately supplied android:port to the URL fetched by _check_url, allowing an authenticated user to upload a crafted APK that makes requests to an attacker-selected nonstandard port at /.well-known/assetlinks.json. With an attacker-controlled hostname and DNS rebinding between validation and the requests.get connection, the request can reach an internal service, although redirects remain disabled and the path is fixed. This issue is fixed in version 4.5.1.

CWE CWE-918
Vendor mobsf
Product mobile-security-framework-mobsf
Published Aug 18, 2026
Last Updated Aug 18, 2026
Stay Ahead of the Next One

Get instant alerts for mobsf mobile-security-framework-mobsf

Be the first to know when new low vulnerabilities affecting mobsf mobile-security-framework-mobsf are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:N
Attack Vector
Network
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
None
Availability
None

Affected Versions

MobSF / Mobile-Security-Framework-MobSF
< 4.5.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/MobSF/Mobile-Security-Framework-MobSF/security/advisories/GHSA-95px-34x5-p37h github.com: https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/2627 github.com: https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/62563ca429a75b3e5d47a13b958e1d2e7d5e2bbf github.com: https://github.com/MobSF/Mobile-Security-Framework-MobSF/releases/tag/v4.5.1