HIGH
TECNO Mobile
CVE published 2026-08-05
CVE-2026-18907
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-05T02:16:37.950Z and has not been modified since then. The CVE-2026-18907 vulnerability is a Path Traversal issue in the Download File Feature of com.talpa.hibrowser 2.23.1.1 on Android. This vulnerability allows attackers to write arbitrary files via directory traversal sequences in filenames. The [truncated]