Vulnerability Details CVE-2026-22070
ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.0%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2026-22070
-
cpe:2.3:a:oppo:coloros_assistant:1.4.26