VYPR
High severity8.8NVD Advisory· Published Jan 6, 2023· Updated Jun 17, 2026

CVE-2022-42979

CVE-2022-42979

Description

Information disclosure due to an insecure hostname validation in the RYDE application 5.8.43 for Android and iOS allows attackers to take over an account via a deep link.

Affected products

4
  • Rydesharing/Ryde2 versions
    cpe:2.3:a:rydesharing:ryde:5.8.43:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:rydesharing:ryde:5.8.43:*:*:*:*:android:*:*
    • cpe:2.3:a:rydesharing:ryde:5.8.43:*:*:*:*:iphone_os:*:*
  • RYDE/RYDEdescription
  • RYDE/RYDEllm-fuzzy
    Range: 5.8.43

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.