Vulnerabilities > Retty

DATE CVE VULNERABILITY TITLE RISK
2021-07-14 CVE-2021-20747 Missing Authorization vulnerability in Retty
Improper authorization in handler for custom URL scheme vulnerability in Retty App for Android versions prior to 4.8.13 and Retty App for iOS versions prior to 4.11.14 allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.
network
retty CWE-862
4.3
2021-07-14 CVE-2021-20748 Use of Hard-coded Credentials vulnerability in Retty
Retty App for Android versions prior to 4.8.13 and Retty App for iOS versions prior to 4.11.14 uses a hard-coded API key for an external service.
network
low complexity
retty CWE-798
5.0