← Back to browse · API

CVE-2022-42979

Severity
HIGH
CVSS
8.8
EPSS
0.24328
Risk score
43.71
CISA KEV
No
PoC
No
Published
2023-01-06
Modified
2025-04-09
First seen
2026-08-07
Aliases
EUVD-2022-46028, GHSA-9749-RQRJ-VCQJ
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-46028

Description

Information disclosure due to an insecure hostname validation in the RYDE application 5.8.43 for Android and iOS allows attackers to take over an account via a deep link.

References