The mobile application insecurely handles information stored within memory. By performing a memory dump on the application after a user has logged out and terminated it, Wi-Fi credentials sent during the pairing process, JWTs used for authentication, and other sensitive details can be retrieved. As a result, an attacker with physical access to the device of a victim can retrieve this information and gain unauthorized access to their home Wi-Fi network and Meatmeet account.
References
Configurations
History
06 Jan 2026, 14:34
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://gist.github.com/dead1nfluence/4dffc239b4a460f41a03345fd8e5feb5#file-sensitive-information-stored-in-memory-md - Third Party Advisory | |
| References | () https://github.com/dead1nfluence/Meatmeet-Pro-Vulnerabilities/blob/main/Mobile-Application/Sensitive%20Information-Stored-in-Memory.md - Third Party Advisory | |
| First Time |
Meatmeet meatmeet
Meatmeet |
|
| CPE | cpe:2.3:a:meatmeet:meatmeet:1.1.2.0:*:*:*:pro:android:*:* |
11 Dec 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.6 |
| CWE | CWE-316 |
10 Dec 2025, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-10 21:16
Updated : 2026-01-06 14:34
NVD link : CVE-2025-65832
Mitre link : CVE-2025-65832
CVE.ORG link : CVE-2025-65832
JSON object : View
Products Affected
meatmeet
- meatmeet
CWE
CWE-316
Cleartext Storage of Sensitive Information in Memory
