CVE-2019-10251: Ucweb Uc Browser

Medium severity, CVSS 5.9. EPSS: 0.8% chance of exploitation in the next 30 days.

The UCWeb UC Browser application through 2019-03-26 for Android uses HTTP to download certain modules associated with PDF and Microsoft Office files (related to libpicsel), which allows MITM attacks.

Affected products

  • Ucweb Uc Browser: up to and including 2019-03-26

Published 2019-03-28. Last modified 2026-06-17.