Sogexia appears as a niche vendor with a narrowly scoped product footprint, and the observed vulnerability signal centers on hard-coded cryptographic key material embedded in its product. This weakness class reflects a durable deficiency in secrets management and cryptographic practices that defenders should address through key rotation and secure credential handling. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sogexia over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63289CRITICAL Sogexia Android App Compile Affected SDK v35, Max SDK 32 and fixed in v36, was discovered to contain hardcoded encryption keys in the encryption_helper.dart file | Nov 12, 2025 | 9.1 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sogexia.
Media articles that mention a CVE ID that affects a product developed by Sogexia — matched by CVE ID, not by vendor name.