CVE-2020-5629: Uniqlo

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

UNIQLO App for Android versions 7.3.3 and earlier allows remote attackers to lead a user to access an arbitrary website via a malicious App created by the third party. As a result, if the access destination is a malicious website, the user may fall victim to the social engineering attack.

Affected products

  • Uniqlo Uniqlo: up to and including 7.3.3

Published 2020-09-18. Last modified 2026-06-17.