I remember reading an article where the government and Google were able to read notifications and record them from every android device. I wonder if Graphene might have patched this problem, and if not, do they have any plans to do so?
Essentially, the apps which don't use Google FCM service are not affected (from what I understand?). I assume that there isn't a problem on the client-side and this exploit works purely because Google stores these notifications.