Executive brief
androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers)
Affected products
- Go github.com/mvt-project/androidqf
Junglewise Threat Intelligence
Severity: medium · CVSS 4 · Published 2026-05-21
Technologies: github.com/mvt-project/androidqf (Go). Vendors: Go.
androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers)