PT-2026-67149 · Meesho · Meesho Online Shopping App
CVSS v3.1
2.1
Low
| Vector | AV:P/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Meesho Online Shopping App versions prior to 20260607
Description
A flaw exists in the
com.meesho.supply component of the Android application. Manipulation of the user id, phone number, email address, or name arguments allows sensitive information to be stored in cleartext. This issue can be exploited directly on the physical device.Recommendations
Update to a version released after 20260607.
Exploit
Fix
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Meesho Online Shopping App