What is CVE-2026-47362?
CVE-2026-47362 is a vulnerability in the Datadog Android application where sensitive data (notification content, deep links, user search queries) is stored in plaintext within Room-backed SQLite databases. This allows anyone with physical access to the device or through malicious apps to read this data. Affected users should update the app to version v554-5.9.4 or later.
Azərbaycanca: CVE-2026-47362 Datadog Android tətbiqində həssas məlumatların (bildiriş məzmunu, dərin keçidlər, istifadəçi axtarış sorğuları) Room-backed SQLite verilənlər bazalarında açıq mətndə saxlanması zəifliyidir. Bu, cihaza fiziki girişi olan və ya zərərli proqram vasitəsilə bu verilənlərə çıxış əldə edən şəxslərə məlumatları oxumağa imkan verir. Təsirə məruz qalan istifadəçilər tətbiqi v554-5.9.4 və ya daha yuxarı versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-200; shared vendor: Datadog
FAQ1
What type of sensitive data is stored in plaintext due to CVE-2026-47362 in the Datadog Android application?
This vulnerability causes notification content, deep links, and user search queries to be stored in plaintext within Room-backed SQLite databases.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.