An issue was discovered in Meatmeet Android Mobile Application 1.1.2.0. An exported activity can be spawned with the mobile application which opens a hidden page. This page, which is not available through the normal flows of the application, contains several devices which can be added to your account, two of which have not been publicly released. As a result of this vulnerability, the attacker can gain insight into unreleased Meatmeet devices.
References
| Link | Resource |
|---|---|
| https://gist.github.com/dead1nfluence/4dffc239b4a460f41a03345fd8e5feb5#file-information-disclosure-md | Third Party Advisory |
| https://github.com/dead1nfluence/Meatmeet-Pro-Vulnerabilities/blob/main/Mobile-Application/Information-Disclosure.md | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-12-10 21:16
Updated : 2025-12-17 20:03
NVD link : CVE-2025-65820
Mitre link : CVE-2025-65820
CVE.ORG link : CVE-2025-65820
JSON object : View
Products Affected
meatmeet
- meatmeet
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
