High severity7.5NVD Advisory· Published Jan 4, 2023· Updated Jun 17, 2026
CVE-2022-46081
CVE-2022-46081
Description
In Garmin Connect 4.61, terminating a LiveTrack session wouldn't prevent the LiveTrack API from continued exposure of private personal information. NOTE: this is disputed by the vendor because the LiveTrack API service is not a customer-controlled product.
Affected products
3- Garmin/Garmin Connectdescription
- Range: =4.61
Patches
Vulnerability mechanics
References
1- www.samwallace.dev/research/Harvesting%20Emails%20with%20Expired%20Garmin%20LiveTrack%20SessionsnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.