
CVE-2020-0014-Toast-复现
This vulnerability allows a malicious app to intercept user operations on the screen by constructing a clickable Toast view, thereby achieving the purpose of collecting sensitive information such as user passwords.
Affected versions: Android 8.0, 8.1, 9, 10

Only feasibility has been verified; the actual harm that the vulnerability can cause has not been verified.
release
Tapjacking via the latest Android Toast vulnerability
Android Security Bulletin
CVE-2020-0014