Starbucks' vulnerability profile is concentrated in a narrow scope around its corporate web and mobile applications, reflecting a consumer-facing business model rather than a software vendor's broad product portfolio. The observed disclosures touch on application-layer concerns typical of web and mobile platforms; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Starbucks over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
The Starbucks 2.6.1 application for iOS stores sensitive information in plaintext in the Crashlytics log file (/Library/Caches/com.crashlytics.data/com.starbucks.mystarbucks/sessio | Jan 28, 2014 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Starbucks.
Media articles that mention a CVE ID that affects a product developed by Starbucks — matched by CVE ID, not by vendor name.