CVE 4.8 MEDIUM

BuzzFeed App com.buzzfeed.android AndroidManifest.xml improper export of android application components_CVE-2025-9093

4.8 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A security vulnerability has been detected in BuzzFeed App 2024.9 on Android. This affects an unknown part of the file AndroidManifest.xml of the component com.buzzfeed.android. The manipulation leads to improper export of android application components. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.

Basic Information

ID CVE-2025-9093
Source VulDB
Published Aug 17, 2025 at 22:02

Affected Product

Vendor n/a
Product BuzzFeed App
Version 2024.9
Affected Versions n/a BuzzFeed App 2024.9

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.