Home

Description

Splashin iOS v2.0 fails to enforce server-side interval restrictions for location updates for free-tier users.

PUBLISHED Reserved 2025-04-22 | Published 2025-07-18 | Updated 2025-07-18 | Assigner mitre

References

splashin.com

carterlasalle.github.io/splashin-cve-2025/splashin-1.pdf

cve.org (CVE-2025-45156)

nvd.nist.gov (CVE-2025-45156)

Download JSON