Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mff-7363-rvf5

Опубликовано: 05 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or city. Furthermore, these coordinates are placed into a database on the client of other users. (The client side was changed in 2019 to encrypt that database.)

HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or city. Furthermore, these coordinates are placed into a database on the client of other users. (The client side was changed in 2019 to encrypt that database.)

EPSS

Процентиль: 10%
0.00201
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-359

Связанные уязвимости

CVSS3: 5.3
nvd
около 2 месяцев назад

HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or city. Furthermore, these coordinates are placed into a database on the client of other users. (The client side was changed in 2019 to encrypt that database.)

EPSS

Процентиль: 10%
0.00201
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-359