Multiple OnePlus smartphone models might have SMS vulnerability and it can be serious, know details about it

Cybersecurity firm Rapid7 has tested and confirmed the vulnerability on various OnePlus smartphones as well as OxygenOS builds.

There are a chunk of Android smartphones users that use OnePlus devices. If you are one of them, you need to be cautious as the OnePlus smartphones running OxygenOS 12, 14 or 15 have a major security flaw. This can result in malicious apps gaining unauthorised access to SMS and MMS data on your smartphone.

According to a report by cybersecurity firm Rapid7, users of OnePlus smartphones which run above mentioned versions of OxygenOS might not get notified about their SMS data being accessed (under this security issue). This will lead to sensitive information disclosure and result in collapse of security provided by SMS-based Multi-Factor Authentication (MFA) checks.

Rapid7 has tested and confirmed the vulnerability on various OnePlus smartphones as well as OxygenOS builds. The firm had earlier stated that this vulnerability (known as CVE-2025-10184 was introduced in the OxygenOS 12. The security firm said that the flaw was not related to hardware

“This vulnerability affects a wide range of OxygenOS versions and multiple OnePlus devices, and we consider the potential impact to be high. The issue stems from the fact that sensitive internal content providers are accessible without permission, and are vulnerable to SQL injection. Based on our analysis, this vulnerability could be leveraged to bypass the core Android READ_SMS permission to silently exfiltrate users’ SMS data without their consent and break SMS-based MFA systems,” mentioned Rapid7 in its blog.

Advertisement

The devices and OS build on which the vulnerability was tested and confirmed by Rapid7 has been mentioned below.

Device / ModelPackage versionOxygenOS VersionBuild Number
OnePlus 8T / KB20033.4.13512KB2003_11_C.33
OnePlus 10 Pro 5G / NE221314.10.3014NE2213_14.0.0.700(EX01)
OnePlus 10 Pro 5G / NE221315.30.515NE2213_15.0.0.502(EX01)
OnePlus 10 Pro 5G / NE221315.30.1015NE2213_15.0.0.700(EX01)
OnePlus 10 Pro 5G / NE221315.40.015NE2213_15.0.0.901(EX01)

 

Also Read: Nubia Z80 Ultra Launch To Take Place Very Soon, Will Be Powered By Snapdragon 8 Elite Gen 5 SoC
Advertisement