Security Advisory
CVE-2026-47362
4.6
MEDIUM
Vulnerability Description
In versions of the Datadog Android application prior to v554-5.9.4, two Room-backed SQLite databases store sensitive content in plaintext: LocalNotificationDatabase (notification title, message, recipient, service, tags, and on-call/incident deep links) and SearchRecentDatabase (the user's full in-app search history).
Impact: Any actor able to bypass the app sandbox can read these databases in plaintext.
Published Date
August 7, 2026
Official Source
NIST NVD Advisory