Spotify
- Known vulnerabilities
- 1
- Still open
- 0
- KEV open
- 0
- Max CVSS (historical)
- 8.8
Cumulative exposure
Low
Aggregates open CVEs (40%) + KEV (30%) + critical shared permissions (15%) + trackers (10%) + OS EOL (5%). Higher score = more exposed.
-
Open CVEs +0/+50
0 open CVEs, max CVSS 0.0, EPSS 0%
-
Active KEVs +0/+35
0 CISA KEVs still open
-
Permissions +0/+10
0 critical shared permission(s)
-
Trackers +0/+8
0 identification/profiling tracker(s)
-
EOL OS +0/+5
Installed OS is end-of-life
Known vulnerabilities (CVE)
Latest matched CVE: 2018 · limited CPE coverage for this vendor — absence of recent CVEs is not a guarantee
Test a different version
1 indeterminable CVE(s) hidden (missing current version or incompatible version schemes). · Show
Security Score
Excellent
Composite: 50% open CVEs + 40% open KEVs + 10% vendor velocity.
-
Open CVEs 0/-50
0 CVEs
-
Open KEVs 0/-40
0 KEVs
-
Vendor 0/-10
100% fresh
Context
Context
Description
Listen to songs, play podcasts, create playlists and discover music you'll love
Data collected and shared
Source: Play Store Data Safety · 18 data item(s) declared
Indicative classification based on data sensitivity. "Shared" = transmitted to third parties (publisher-declared).
Other apps by this publisher
Apps published by Spotify AB
FAQ
FAQ: Spotify
Does Spotify have known security vulnerabilities?
Spotify (com.spotify.music) on Android has 1 CVE referenced in NVD, 0 still open on the current version and 0 listed in the CISA KEV catalog. Absence of a CVE is not a security guarantee.
Is the current version of Spotify affected by any open CVE?
Version 9.1.46.1923 of Spotify on Android has no open CVE referenced in NVD. Absence of a CVE is not a security guarantee.
Is Spotify affected by an actively exploited vulnerability (CISA KEV)?
No CVE affecting Spotify (com.spotify.music) is currently in the CISA KEV catalog.
What is the latest known version of Spotify?
The most recent version of Spotify (com.spotify.music) tracked by Appaloosa Scout is 9.1.46.1923, published by Spotify AB.