Junglewise Threat Intelligence

androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers)

Severity: medium · CVSS 4 · Published 2026-05-21

Technologies: github.com/mvt-project/androidqf (Go). Vendors: Go.

Executive brief

androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers)

Affected products

  • Go github.com/mvt-project/androidqf

Related threats