PT-2026-67149 · Meesho · Meesho Online Shopping App

·

CVE-2026-18591

·

Published

2026-08-03

·

Updated

2026-08-03

CVSS v3.1

2.1

Low

VectorAV:P/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Meesho Online Shopping App versions prior to 20260607
Description A flaw exists in the com.meesho.supply component of the Android application. Manipulation of the user id, phone number, email address, or name arguments allows sensitive information to be stored in cleartext. This issue can be exploited directly on the physical device.
Recommendations Update to a version released after 20260607.

Exploit

Fix

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-18591

Affected Products

Meesho Online Shopping App