CVE-2025-26430 | Google Android 15 SpaAppBridgeActivity getDestinationForApp logic error
A vulnerability labeled as problematic has been found in Google Android 15. The impacted element is the function getDestinationForApp of the component SpaAppBridgeActivity. The manipulation results in business logic errors.
This vulnerability is identified as CVE-2025-26430. The attack is only possible with local access. There is not any exploit available.
A patch should be applied to remediate this issue.