CVE-2019-9196: Aware Knomi

High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.

The Face authentication component in Aware mobile liveness 2.2.1 sdk 2.2.0 for Knomi allows a Biometrical Liveness authentication bypass via parameter tampering of the /knomi/analyze security_level field.

Affected products

  • Aware Knomi: version 2.2.0 only; version 2.2.1 only

Published 2019-05-15. Last modified 2026-06-17.