Vulnerabilities > Mercari > Mercari > 4.49.1

DATE CVE VULNERABILITY TITLE RISK
2024-01-26 CVE-2024-23388 Missing Authorization vulnerability in Mercari 3.51.0/3.52.0/4.49.1
Improper authorization in handler for custom URL scheme issue in "Mercari" App for Android prior to version 5.78.0 allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.
network
low complexity
mercari CWE-862
6.1