Missing Cryptographic Step (CWE-325) vulnerability exists in certain FeliCa IC chips shipped in or before 2017. If the vulnerability is exploited, information stored in the IC chip may be read or tampered with.Referenceshttps://www.sony.co.jp/en/Products/felica/business/information/2025001.htmlhttps://jvn.jp/en/jp/JVN40509781/