VYPR
Unrated severityNVD Advisory· Published Nov 12, 2013· Updated Jun 16, 2026

CVE-2013-5726

CVE-2013-5726

Description

Tweetbot 1.3.3 for Mac, and 2.8.5 for iPad and iPhone, does not require confirmation of (1) follow or (2) favorite actions, which allows remote attackers to automatically force the user to perform undesired actions, as demonstrated via the tweetbot:///follow/ URL.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Tapbots/Tweetbot3 versions
    cpe:2.3:a:tapbots:tweetbot:1.3.3:-:*:*:*:mac:*:*+ 2 more
    • cpe:2.3:a:tapbots:tweetbot:1.3.3:-:*:*:*:mac:*:*
    • cpe:2.3:a:tapbots:tweetbot:2.8.5:-:*:*:*:ipad:*:*
    • cpe:2.3:a:tapbots:tweetbot:2.8.5:-:*:*:*:iphone:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.