Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-18312

Quick assessment

Affected
Readwise Reader
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Readwise Reader for Android 在使用 WebView 构建 URL 时,直接使用了由攻击者控制的元数据,且未进行适当的编码或转义。该应用将不受信任的值直接插入到 URL 字符串中,并通过 插入到 DOM 中。由于这种插入操作没有对 HTML 或 JavaScript 上下文进行编码,构造的恶意元数据可以突破预期的 URL 结构,从而注入脚本内容。攻击者可以提供一个包含恶意元数据的文档,当该文档同步到 Android 设备并在 Reader WebView 中渲染时,会导致注入脚本的执行,从

AI Predicted 8.1 Difficulty: Easy EPSS 0.19% · P8

Affected Version Matrix 1

VendorProduct Version RangeStatus
Readwise Reader 8.7.2≤ 8.10.1 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-18312

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
CVE-2026-18312
Source: CVE Program / CVE List V5
Vulnerability Description
Readwise Reader for Android constructs URLs in its WebView using attacker-controlled metadata without proper encoding or escaping. The application interpolates untrusted values directly into URL strings and inserts them into the DOM via innerHTML. Because the interpolation occurs without HTML or JavaScript context encoding, a crafted metadata value can break out of the intended URL structure and inject script content. An attacker could supply a document containing malicious metadata that, once synchronized to an Android device and rendered in the Reader WebView, results in execution of injected script content, enabling stored cross-site scripting (XSS)
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Readwise Reader 8.7.2 ~ 8.10.1 -

II. Public POCs for CVE-2026-18312

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-18312

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-18312 (1)

Same Patch Batch · Readwise · 2026-09-25 · 3 CVEs total

CVE-2026-18311 CVE-2026-18311
CVE-2026-18320 CVE-2026-18320

IV. Related Vulnerabilities

V. Comments for CVE-2026-18312

No comments yet


Leave a comment