A vulnerability categorized as problematic has been discovered in textPlus Text Message and Call App up to 8.3.5 on Android. This impacts the function
DialerActivity of the component com.gogii.textplus. Such manipulation leads to improper export of android application components.
This vulnerability is documented as CVE-2026-18604. The attack needs to be performed locally. Additionally, an exploit exists.
The vendor was contacted early about this disclosure.