PatchSiren

Blix CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW Blix CVE published 2026-08-03

CVE-2026-18648

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-03T21:16:37.797Z and has not been modified since then. The Blix Email Blue Mail Calendar App 2.2.305 has a vulnerability in the react-native-receive-sharing-intent component, specifically in the FileDirectory.getDataColumn/FileDirectory.getFileFromUri functions, which allows for path traversal attac [truncated]