Android App 'Wolt Delivery: Food and more' version 4.27.2...
High severity
Unreviewed
Published
Apr 11, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Apr 11, 2023
Published to the GitHub Advisory Database
Apr 11, 2023
Last updated
Apr 4, 2024
Android App 'Wolt Delivery: Food and more' version 4.27.2 and earlier uses hard-coded credentials (API key for an external service), which may allow a local attacker to obtain the hard-coded API key via reverse-engineering the application binary.
References