Critical Capacitor Flaw Lets Malicious Links Access App Data and Native Features

A critical vulnerability in Capacitor for Android and iOS could let a malicious link opened inside an affected mobile app load attacker-controlled web content at the application’s trusted origin. The issue, tracked as CVE-2026-103922, can expose app data stored in localStorage and cookies and give malicious scripts access to native Capacitor features available through registered […]

This article has been indexed from Cyber Security News

Read the original article: