Filtered by vendor Duolingo Subscriptions
Filtered by product Tinycards Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-16905 2 Duolingo, Google 2 Tinycards, Android 2024-08-05 N/A
The DuoLingo TinyCards application before 1.0 for Android has one use of unencrypted HTTP, which allows remote attackers to spoof content, and consequently achieve remote code execution, via a man-in-the-middle attack.