CVE-2025-11598

Publication date

2026-02-03 11:33:55

Family

CERT-PL

State

PUBLISHED

Description

In mObywatel iOS applicationĀ an unauthorized user can use the App Switcher to view the account owners personal information in the minimized app window, even after the login session has ended (reopening the app would require the user to log in). The data exposed depends on the last application view displayed before the application was minimized This issue was fixed in version 4.71.0