My Safetipin Android Application 5.2.1 contains Hardcoded credentials in the authentication module, which allows remote attackers to bypass authentication and gain unauthorized access to user accounts via predictable OTP values.
https://play.google.com/store/apps/details?id=com.safetipin.mysafetipin
https://github.com/Leoccc98/cve-reports/blob/main/advisories/CVE-2025-63823/README.md