Session 1.13.0 allows an attacker with physical access to the victim's device to bypass the application's password/pin lock to access user data. This is possible due to lack of adequate security controls to prevent dynamic code manipulation.
{ "versions": [ { "introduced": "0" }, { "last_affected": "1.13.0" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-1955.json"