Mintegral provides advertising SDK components integrated into mobile applications, with its identified vulnerabilities centered on the ad delivery and tracking components of that SDK. The recurrent weakness classes—cleartext transmission of sensitive information, code injection, and improper UI-layer controls—reflect the data-handling and dynamic-rendering demands of an ad-serving pipeline where user data and ad content flow through multiple processing stages. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mintegral over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-7705HIGH This affects the package MintegralAdSDK from 0.0.0. The SDK distributed by the company contains malicious functionality that tracks any URL opened by the app and reports it back to | Aug 24, 2020 | 8.1 | 25 | NO | NO |
CVE-2020-7745HIGH This affects the package MintegralAdSDK before 6.6.0.0. The SDK distributed by the company contains malicious functionality that acts as a backdoor. Mintegral and their partners (a | Oct 19, 2020 | 7.1 | 19 | NO | NO |
CVE-2020-7744MEDIUM This affects all versions of package com.mintegral.msdk:alphab. The Android SDK distributed by the company contains malicious functionality in this module that tracks: 1. Downloads | Oct 15, 2020 | 4.7 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mintegral.
Media articles that mention a CVE ID that affects a product developed by Mintegral — matched by CVE ID, not by vendor name.