Fiche vulnérabilité
CVE-2025-9093 : faille moyenne buzzfeed buzzfeed (CVSS 5.5)
Description
A security vulnerability has been detected in BuzzFeed App 2024.9 on Android. This affects an unknown part of the file AndroidManifest.xml of the component com.buzzfeed.android. The manipulation leads to improper export of android application components. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
En bref
- Sévérité
- Moyenne (CVSS 5.5)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 17 août 2025
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- buzzfeed buzzfeed