# CVE-2025-9675

## Summary

- **CVE ID:** CVE-2025-9675
- **Severity:** MEDIUM
- **CVSS Score:** 5.3 (CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P)
- **CWE:** CWE-926
- **Published:** Aug 29, 2025
- **Last Modified:** Mar 12, 2026

## Description

A vulnerability was determined in Voice Changer App up to 1.1.0. This issue affects some unknown processing of the file AndroidManifest.xml of the component com.tuyangkeji.changevoice. Executing manipulation can lead to improper export of android application components. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized.

## Affected Products

- n/a — Voice Changer App (1.0)
- n/a — Voice Changer App (1.1.0)

## References

- [CNA](https://vuldb.com/?id.321887)
- [CNA](https://vuldb.com/?ctiid.321887)
- [CNA](https://vuldb.com/?submit.638073)
- [CNA](https://github.com/KMov-g/androidapps/blob/main/com.tuyangkeji.changevoice.md)
- [CNA](https://github.com/KMov-g/androidapps/blob/main/com.tuyangkeji.changevoice.md#steps-to-reproduce)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.27%
- **EPSS Percentile:** 18.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._