Expedia
- Known vulnerabilities
- 0
- Still open
- 0
- KEV open
- 0
- Max CVSS (historical)
- —
Cumulative exposure
Low
Aggregates open CVEs (40%) + KEV (30%) + critical shared permissions (15%) + trackers (10%) + OS EOL (5%). Higher score = more exposed.
-
Open CVEs +0/+50
0 open CVEs, max CVSS 0.0, EPSS 0%
-
Active KEVs +0/+35
0 CISA KEVs still open
-
Permissions +9/+10
3 critical shared permission(s)
-
Trackers +0/+8
0 identification/profiling tracker(s)
-
EOL OS +0/+5
Installed OS is end-of-life
Based on permissions only: no CVE data referenced for this app.
Known vulnerabilities (CVE)
No CVE is currently referenced in NVD for this app on its platform.
The absence of CVEs is not a security guarantee — it can also mean nobody has audited or published findings.
Context
Context
Description
Expedia is a one-stop travel shop for booking flights, hotels, car rentals, activities, and vacation packages — and managing your whole trip in one place. Search, compare, book, and track it all from a single app, and save more when you bundle. YOUR ONE-STOP TRAVEL SHOP Plan a trip from start to finish without app-hopping. Book flights, hotels, cars, and things to do, then keep every confirmation, itinerary, and reservation organized in one place. Whether it's a quick weekend getaway, a family vacation, or travel to Europe, Expedia helps you plan, book, and manage the whole journey. BUNDLE & SAVE UP TO 30%* Add a hotel to your flight and save on your trip. Bundle your stay, your flight, and your ride into one vacation package and unlock package deals you won't find when you book each piece separately. More of your trip in one booking means more ways to save. DISCOVER FLIGHT DEALS Flight Deals analyzes millions of flights per day to find fares at least 20% below what's typically predicted for your route — surfaced on an interactive map, ready to book.
Data collected and shared
Source: App Store · App Privacy · 16 data item(s) declared
Indicative classification based on data sensitivity. "Shared" = transmitted to third parties (publisher-declared).
FAQ
FAQ: Expedia
Why are no CVEs listed for Expedia?
No CVE is currently referenced in NVD for Expedia (com.expedia.booking) with a iOS CPE configuration. Either none has been publicly disclosed, or none has been mapped yet. Absence of a CVE is not a security guarantee.
What is the latest known version of Expedia?
The most recent version of Expedia (com.expedia.booking) tracked by Appaloosa Scout is 2026.32, published by Expedia, Inc..