PatchSiren

Lippu CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Lippu CVE published 2026-10-11

CVE-2026-108544

A path traversal vulnerability was identified in Lippu Docx Reader Office Viewer App up to 1.4.5 on Android, affecting the function word.office.docxviewer.document.docx.reader.ViewTxt. This could allow remote attackers to manipulate the argument _display_name. The CVSS score is 5.3, indicating a medium severity. The vulnerability could potentially lead to unauthorized access or data exposure. Defenders sh [truncated]