Twilio Authy Authenticator
- Known vulnerabilities
- 1
- Still open
- 0
- KEV open
- 0
- Max CVSS (historical)
- 5.3
1 total (history)
Cumulative exposure
Low
Aggregates open CVEs (40%) + KEV (30%) + critical shared permissions (15%) + trackers (10%) + OS EOL (5%). Higher score = more exposed.
-
Open CVEs +0/+50
0 open CVEs, max CVSS 0.0, EPSS 0%
-
Active KEVs +0/+35
0 CISA KEVs still open
-
Permissions +0/+10
0 critical shared permission(s)
-
Trackers +0/+8
0 identification/profiling tracker(s)
-
EOL OS +0/+5
Installed OS is end-of-life
Known vulnerabilities (CVE)
Latest matched CVE: 2024 · limited CPE coverage for this vendor — absence of recent CVEs is not a guarantee
Test a different version
| CVE |
|---|
|
CVE-2024-39891
Fixed
MEDIUM 5.3
KEV
Network Fixed in: 25.1.0
|
Context
Context
Description
Protect all your accounts with the Authy two factor authentication app
Data collected and shared
Source: Play Store Data Safety · 8 data item(s) declared
Indicative classification based on data sensitivity. "Shared" = transmitted to third parties (publisher-declared).
FAQ
FAQ: Twilio Authy Authenticator
Does Twilio Authy Authenticator have known security vulnerabilities?
Twilio Authy Authenticator (com.authy.authy) on Android has 1 CVE referenced in NVD, 0 still open on the current version and 0 listed in the CISA KEV catalog. Absence of a CVE is not a security guarantee.
Is the current version of Twilio Authy Authenticator affected by any open CVE?
Version 27.6.0 of Twilio Authy Authenticator on Android has no open CVE referenced in NVD. Absence of a CVE is not a security guarantee.
Is Twilio Authy Authenticator affected by an actively exploited vulnerability (CISA KEV)?
No CVE affecting Twilio Authy Authenticator (com.authy.authy) is currently in the CISA KEV catalog.
What is the latest known version of Twilio Authy Authenticator?
The most recent version of Twilio Authy Authenticator (com.authy.authy) tracked by Appaloosa Scout is 27.6.0, published by Authy.