VYPR

Bluestacks

by Bluestacks

CVEs (6)

  • CVE-2018-0701HigNov 15, 2018
    risk 0.57cvss 8.8epss 0.01

    BlueStacks App Player (BlueStacks App Player for Windows 3.0.0 to 4.31.55, BlueStacks App Player for macOS 2.0.0 and later) allows an attacker on the same network segment to bypass access restriction to gain unauthorized access.

  • CVE-2016-4288HigJan 6, 2017
    risk 0.55cvss 8.4epss 0.01

    A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.

  • CVE-2020-24367HigNov 10, 2020
    risk 0.51cvss 7.8epss 0.00

    Incorrect file permissions in BlueStacks 4 through 4.230 on Windows allow a local attacker to escalate privileges by modifying a file that is later executed by a higher-privileged user.

  • CVE-2019-14220MedSep 24, 2019
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in BlueStacks 4.110 and below on macOS and on 4.120 and below on Windows. BlueStacks employs Android running in a virtual machine (VM) to enable Android apps to run on Windows or MacOS. Bug is in a local arbitrary file read through a system service call.…

  • CVE-2019-25548MedMar 21, 2026
    risk 0.40cvss 6.2epss 0.00

    BlueStacks 4.80.0.1060 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to the search field. Attackers can paste a buffer of 100,000 'A' characters into the search field and trigger a search operation…

  • CVE-2025-44964LowAug 5, 2025
    risk 0.25cvss 3.9epss 0.00

    A lack of SSL certificate validation in BlueStacks v5.20 allows attackers to execute a man-it-the-middle attack and obtain sensitive information.