CVE-2025-1298: Tecno Com.transsion.carlcare

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Logic vulnerability in the mobile application (com.transsion.carlcare) may lead to the risk of account takeover.

Affected products

  • Tecno Com.transsion.carlcare: version 6.2.8.1 only

Published 2025-02-14. Last modified 2026-06-17.