CVE-2026-1578: HP Inc HP App

Medium severity, CVSS 5.1. EPSS: 0.1% chance of exploitation in the next 30 days.

HP App for Android is potentially vulnerable to cross-site scripting (XSS) when using an outdated version of the application via mobile devices. HP is releasing updates to mitigate these potential vulnerabilities.

Affected products

  • HP Inc HP App: before 26.0.0.6234 (fixed in 26.0.0.6234)

Published 2026-02-13. Last modified 2026-06-17.