From c37fae77c36db4521c10dd851a125e3e0d0a9995 Mon Sep 17 00:00:00 2001 From: Abhishek Singh <45100807+abhishek-900@users.noreply.github.com> Date: Thu, 5 Mar 2026 11:20:18 +0530 Subject: [PATCH 1/2] fix(android): Add filterTouchesWhenObscured to prevent Tapjacking Adds filterTouchesWhenObscured="true" to the user feedback dialog to prevent overlay/tapjacking attack ( CWE-1021) --- .../src/main/res/layout/sentry_dialog_user_feedback.xml | 1 + 1 file changed, 1 insertion(+) diff --git a/sentry-android-core/src/main/res/layout/sentry_dialog_user_feedback.xml b/sentry-android-core/src/main/res/layout/sentry_dialog_user_feedback.xml index e6f77b90a7f..722a0d5cf3d 100644 --- a/sentry-android-core/src/main/res/layout/sentry_dialog_user_feedback.xml +++ b/sentry-android-core/src/main/res/layout/sentry_dialog_user_feedback.xml @@ -4,6 +4,7 @@ android:id="@+id/sentry_dialog_user_feedback_layout" android:layout_width="match_parent" android:layout_height="match_parent" + android:filterTouchesWhenObscured="true" tools:ignore="HardcodedText,RtlHardcoded" android:theme="?android:attr/dialogTheme" android:padding="24dp"> From f088a26a08eed52dc48a026b530dc7ee8c416899 Mon Sep 17 00:00:00 2001 From: Roman Zavarnitsyn Date: Thu, 5 Mar 2026 14:39:03 +0100 Subject: [PATCH 2/2] Changelog --- CHANGELOG.md | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/CHANGELOG.md b/CHANGELOG.md index 338bbea4457..99864f3167b 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,5 +1,11 @@ # Changelog +## Unreleased + +### Fixes + +- Android: Add `filterTouchesWhenObscured` to prevent Tapjacking on user feedback dialog ([#5155](https://github.com/getsentry/sentry-java/pull/5155)) + ## 8.34.0 ### Features