CVE-2026-84283
FluteCode Secure Folder 1.2 -Plaintext vault files in shared storage bypass the PIN gate
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Secure Folder 1.2 stores files selected for its password-protected vault as unencrypted files in the Android shared-storage tree. A local application or file manager that has access to the relevant shared-storage path can enumerate, copy, and open those files without authenticating to Secure Folder.
| CWE | CWE-922 |
| Vendor | flutecode |
| Product | secure folder |
| Published | Sep 24, 2026 |
Stay Ahead of the Next One
Get instant alerts for flutecode secure folder
Be the first to know when new unknown vulnerabilities affecting flutecode secure folder are published β delivered to Slack, Telegram or Discord.
Get Free Alerts β
Free Β· No credit card Β· 60 sec setup
Affected Versions
FluteCode / Secure Folder
1.2
References
Credits
AndrΓ©s Ramos