CVE-2020-13836: Google Android

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. HWRResProvider allows path traversal for data exposure. The Samsung ID is SVE-2020-16954 (June 2020).

Affected products

  • Google Android: version 8.0 only; version 8.1 only; version 9.0 only; version 10.0 only

Published 2020-06-04. Last modified 2026-06-17.