bitcoinVend
bitcoinVend copied to clipboard
AutoConnect lib has XSS injection vulnerability through Wi-Fi beacon frame. (CVE-2025-50740) which impacts your project.
Your device is vulnerable to CVE-2025-50740 and I suggest you fix this to ensure security of the project/device.
Impact: A malicious user in vicinity could use this issue to
- Inject malicious code into the mobile from which user is trying to configure the device.
- Make connection to his own wi-fi network to keep the device in his control.