VDB

CVE-2022-32836

CVE-2022-32836 PUBLISHED CVSS 7.5 HIGH

This issue was addressed with improved state management. This issue is fixed in Apple Music 3.9.10 for Android. An app may be able to access user-sensitive data.

EPSS 0.55% · 43.1th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.55%
43.1th percentile

Affected Products

VendorProductVersions
AppleApple Music for Androidunspecified
applemusic3.9.10

Timeline

  • Feb 27, 2023 CVE Published
  • Feb 28, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 8, 2023 EPSS Score
  • May 17, 2023 EPSS Score
  • Jun 26, 2023 EPSS Score
  • Aug 4, 2023 EPSS Score
  • Sep 12, 2023 EPSS Score
  • Oct 21, 2023 EPSS Score
  • Nov 30, 2023 EPSS Score
  • Jan 8, 2024 EPSS Score
  • Feb 16, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›