CVE-2026-47362
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/08/2026
Last modified:
08/08/2026
Description
In versions of the Datadog Android application prior to v554-5.9.4, two Room-backed SQLite databases store sensitive content in plaintext: LocalNotificationDatabase (notification title, message, recipient, service, tags, and on-call/incident deep links) and SearchRecentDatabase (the user&#39;s full in-app search history). <br />
Impact: Any actor able to bypass the app sandbox can read these databases in plaintext.
Impact
Base Score 3.x
4.60
Severity 3.x
MEDIUM


