Skip to content
Noroxi

Spotify records

3 published records for vendor spotify.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
33.3%
Median publish → KEV
No record has entered KEV

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

3 records
  • CVE-2018-1167
    36Monitor

    This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Spotify Music Player 1.0.69.336.

    HighCVSS 8.8No exploitEPSS 5%

    spotify · spotifyApr 18, 2018

  • Luigi version prior to version 2.8.0; after commit 53b52e12745075a8acc016d33945d9d6a7a6aaeb; after GitHub PR spotify/luigi/pull/1870 contain

    HighCVSS 8.8No exploitEPSS 1%

    spotify · luigiDec 20, 2018

  • The Spotify app 8.9.58 for iOS has a buffer overflow in its use of strcat.

    HighCVSS 7.5No exploitEPSS 1%

    Oct 28, 2024