Snap's vulnerability footprint is centered on its Snapchat Lenscore product, a modestly represented area in the landscape reflecting the vendor's focused application scope. The observed weakness classes center on type-handling issues, including type confusion and incorrect type conversion, which are characteristic of memory-unsafe implementations in media and graphics processing code.
The number and severity of CVEs published that impact products developed by Snap over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-5436CRITICAL Type confusion in Snapchat LensCore could lead to denial of service or arbitrary code execution prior to version 12.88. We recommend upgrading to version 12.88 or above. | May 31, 2024 | 9.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Snap.
Media articles that mention a CVE ID that affects a product developed by Snap — matched by CVE ID, not by vendor name.