Bestweather Project maintains a weather-focused application with a narrow vulnerability footprint concentrated in its core Bestweather product. The observed weakness classes center on origin validation and information-handling issues that reflect the product's data-sourcing and integration architecture. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bestweather Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-29741CRITICAL An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause an escalation of privileges attack by manipulating the database. | May 30, 2023 | 9.8 | 28 | NO | NO |
CVE-2023-29742HIGH An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a code execution attack by manipulating the database. | May 31, 2023 | 7.8 | 23 | NO | NO |
CVE-2023-29743HIGH An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent denial of service attack by manipulating the database. | May 30, 2023 | 7.5 | 22 | NO | NO |
CVE-2023-29745HIGH An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent denial of service attack by manipulating the database. | May 31, 2023 | 7.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bestweather Project.
Media articles that mention a CVE ID that affects a product developed by Bestweather Project — matched by CVE ID, not by vendor name.