Junglewise Threat Intelligence

GO-2026-5464 - androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers) in github.com/mvt-project/androidqf

Severity: info · Published 2026-06-25

Technologies: github.com/mvt-project/androidqf (Go). Vendors: Go.

Executive brief

androidqf: Zip entry Name Injection in APK bundle (Zip Slip for zip consumers) in github.com/mvt-project/androidqf

Affected products

  • Go github.com/mvt-project/androidqf

Related threats