CVE Database
/

CVE-2026-10510

Back to search

CVE-2026-10510

Published: Jun 2, 2026

Modified: Jun 2, 2026

PUBLISHED

Description

Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aiassistantlifestyle) all versions on Android allows remote attacker to execute arbitrary JavaScript in the WebView context via crafted web_action_data URL parameter.

VendorProductVersions

TECNO Mobile

com.transsion.aiassistantlifestyle

affected
v1.3.0.002

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now