CVE-2026-9222
HIGH NVDCVSS Score
8.1
Severity
HIGH
Source
NVD
Published
Jun 26, 2026
Description
Setracker2 Android Companion App com.tgelec.setracker versions 3.1.5 and prior only require the password hash when authenticating with backend services from the client. This could allow an attacker, who knows the hash, to authenticate and gain full access.