CVE-2025-9093
5.3MEDIUMA security vulnerability has been detected in BuzzFeed App 2024.9 on Android. This affects an unknown part of the file AndroidManifest.xml of the component com.buzzfeed.android. The manipulation leads
Publicado: 8/17/2025Actualizado: 9/11/2025
Descripción
A security vulnerability has been detected in BuzzFeed App 2024.9 on Android. This affects an unknown part of the file AndroidManifest.xml of the component com.buzzfeed.android. The manipulation leads to improper export of android application components. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
Análisis IAImpulsado por IA
Productos Afectados
buzzfeedbuzzfeed
2024.9
Referencias
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.mdExploitThird Party Advisory
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.md#steps-to-reproduceExploitThird Party Advisory
- https://vuldb.com/?ctiid.320415Permissions RequiredVDB Entry
- https://vuldb.com/?id.320415Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.623584Third Party AdvisoryVDB Entry
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.mdExploitThird Party Advisory
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.md#steps-to-reproduceExploitThird Party Advisory