CVE-2025-9675 is a vulnerability in Voice Changer App up to version 1.1.0, specifically impacting the processing of AndroidManifest.xml within the com.tuyangkeji.changevoice component, and affecting Google Android and Voice Changer Project products. This medium-severity flaw (CVSS 5.5) allows for improper export of Android application components through a local attack with low complexity, potentially leading to high confidentiality impact. While the exploit has been publicly disclosed, there is no evidence of active exploitation, and it currently lacks exploit code in common frameworks and significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.1.0CPE matchmatch criteria | cpe:2.3:a:voice_changer_project:voice_changer:*:*:*:*:*:android:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.