If you own a OnePlus smartphone running OxygenOS 12, 14, or 15, there’s a serious security issue you need to know about. Cybersecurity firm Rapid7 recently revealed a vulnerability that could allow malicious apps to access SMS and MMS messages on your device without your permission, interaction, or knowledge.
How the Vulnerability Works and Why It’s Dangerous
According to Rapid7, users are not notified when SMS data is accessed. This flaw could expose sensitive information and even compromise SMS-based Multi-Factor Authentication (MFA). Essentially, attackers could read messages that are meant to keep your accounts secure.
Devices and OxygenOS Versions Affected
The vulnerability, tracked as CVE-2025-10184, was introduced with OxygenOS 12, while OxygenOS 11 versions are safe. Rapid7 confirmed it on the following devices:
- OnePlus 8T – OxygenOS 12
- OnePlus 10 Pro 5G – OxygenOS 14 & 15
Other OnePlus devices running these OS versions could also be at risk, although it is not hardware-specific.
OnePlus Response and Fix Timeline
Rapid7 first reported the issue to OnePlus on May 1, 2025. After multiple follow-ups, OnePlus acknowledged the flaw and promised a global software update starting mid-October. Until then, users remain exposed.
What Users Should Do Until the Fix Arrives
Rapid7 recommends the following safety measures:
- Install apps only from trusted sources and remove unnecessary apps.
- Switch SMS-based MFA to an authenticator app to reduce exposure.
- Use end-to-end encrypted messaging apps instead of SMS.
- Change third-party notifications from SMS to in-app push alerts wherever possible.
Final Advice
Until the mid-October fix, OnePlus users should stay vigilant. Limiting app permissions, switching to secure authentication methods, and avoiding SMS for sensitive data can protect your personal information from potential attackers.
Read Also:-
- Huawei MatePad Pro 12.2 and MatePad 12 X: Why These Tablets Are a Game-Changer
- Xiaomi Pad Mini Unboxing and Hands-On: Can It Take on the Apple iPad Mini?
- Vivo V60 Lite 4G Announced: New Camera, Better Screen, and Massive 6,500mAh Battery
- Google Pixel 10 Pro XL vs iPhone 17 Pro Max: I Used Both and I’m Shocked by the One I Prefer